Input validation vulnerability in Under Construction, Coming Soon & Maintenance Mode 1.1.2

(e.g. RSS readers, etc). The Under Construction, Coming Soon & Maintenance Mode Plugin for WordPress has a security vulnerability in versions up to, and including, 1.1.1. This vulnerability can be exploited by unauthenticated attackers without the user’s knowledge, and can be accessed through direct access to the affected file or any application that reads data from URLs (e.g. RSS readers). The vulnerability is due to missing or incorrect validation on the ‘ucmm_mc_api’ function.

Detected in:

Under Construction, Coming Soon & Maintenance Mode fixed vulnerable versions: >= * < 1.1.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.