Authentication vulnerability in Absolute Privacy 2.0.5

The Absolute Privacy plugin for WordPress has a security issue in versions up to, and including, 2.0.5. This means that malicious people can log in to any legitimate username on the system, including administrator accounts, without needing the correct password. This is because the plugin incorrectly verifies passwords.

Detected in:

Absolute Privacy open vulnerable versions: >= * <= 2.0.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.