📦 Wp Emember

by Tipsandtricks Hq

🔍 What is Wp Emember?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-5715

HIGH CVSS 7.1 Jul 13, 2024

This vulnerability in the wp-eMember WordPress plugin allows attackers to inject malicious scripts via unsanitized parameters, which are then reflected back in pages. It primarily targets high-privile...

CVE-2024-5080

HIGH CVSS 8.8 Jul 13, 2024

This vulnerability in the wp-eMember WordPress plugin allows administrators to upload arbitrary files without validation, including malicious PHP files. Attackers with admin access could upload webshe...

CVE-2024-5076

HIGH CVSS 8.8 Jul 13, 2024

The wp-eMember WordPress plugin before version 10.6.6 lacks Cross-Site Request Forgery (CSRF) protection on certain endpoints, allowing attackers to trick authenticated users into performing unintende...

CVE-2024-4749

HIGH CVSS 8.3 Jun 4, 2024

This vulnerability in the wp-eMember WordPress plugin allows attackers to inject malicious scripts via the 'fieldId' parameter, which are then executed in victims' browsers when they visit a specially...

CVE-2024-5079

MEDIUM CVSS 6.1 Jul 13, 2024

The wp-eMember WordPress plugin before version 10.6.7 has a stored cross-site scripting (XSS) vulnerability in member registration fields. Unauthenticated attackers can inject malicious scripts that e...

CVE-2024-5075

MEDIUM CVSS 5.9 Jul 13, 2024

This vulnerability in the wp-eMember WordPress plugin allows attackers to inject malicious scripts via unsanitized parameters, which are then reflected back in web pages. It primarily targets high-pri...