CVE-2018-20965: XSS
Published Aug 12, 2019
·Updated
The ultimate-member plugin before 2.0.4 for WordPress has XSS.
Affected Software
1 affected component
ultimatemember Ultimate Member Wordpress<2.0.4
Event History
Aug 12, 2019
CVE Published
via MITRE·03:25 PM
Data Sourced
via MITRE·03:25 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-20965?
The severity of CVE-2018-20965 is medium.
2
What is the affected software of CVE-2018-20965?
The affected software of CVE-2018-20965 is Ultimatemember Ultimate Member plugin before 2.0.4 for WordPress.
3
How does CVE-2018-20965 impact WordPress websites?
CVE-2018-20965 allows for cross-site scripting (XSS) attacks on WordPress websites.
4
How can I fix CVE-2018-20965?
To fix CVE-2018-20965, update the Ultimatemember Ultimate Member plugin to version 2.0.4 or newer.
5
Where can I find more information about CVE-2018-20965?
You can find more information about CVE-2018-20965 on the WordPress plugin page and WPvulnDB.