cleantalk

Vulnerabilities and Security Researches

Security report for CVE Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions > CVE-2021-20678

CVE, Research URL

CVE-2021-20678

Published on
Mar 18, 2021
Research Description
SQL injection vulnerability in the Paid Memberships Pro versions prior to 2.5.6 allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.
Affected versions
Min -, max 2.5.6.
Status
vulnerable