Input validation vulnerability in Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin 2.0.22

The Arbitrary File Upload plugin for WordPress is a plugin that is vulnerable to malicious activity. This vulnerability affects versions of the plugin up to and including 2.0.21. Attackers can use this vulnerability to upload malicious files onto the web server of sites that use this plugin. This can allow the attackers to gain access to the server and potentially run malicious code.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.