WordPress Ultimate Member Plugin Cross-Site Scripting (CVE-2024-2123)

Related Vulnerabilities: CVE-2024-2123  

Check Point Reference: CPAI-2024-0125 Date Published: 20 Mar 2024 Severity: Medium Last Updated: Wednesday 20 March, 2024 Source: Industry Reference:CVE-2024-2123
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? WordPress Ultimate Member plugin prior to 2.8.4 Vulnerability Description A cross-site scripting vulnerability exists in WordPress Ultimate Member plugin. Successful exploitation of this vulnerability would allow remote attackers to inject arbitrary web script into the affected system.