CVE-2020-5579: SQL Injection
SQL injection vulnerability in the Paid Memberships versions prior to 2.3.3 allows attacker with administrator rights to execute arbitrary SQL commands via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-5579?
The severity of CVE-2020-5579 is high with a severity value of 7.2.
What is CVE-2020-5579?
CVE-2020-5579 is a SQL injection vulnerability in the Paid Memberships plugin for WordPress versions prior to 2.3.3.
How does CVE-2020-5579 affect the Paid Memberships plugin?
CVE-2020-5579 allows an attacker with administrator rights to execute arbitrary SQL commands through unspecified vectors.
How can I fix CVE-2020-5579?
To fix CVE-2020-5579, you need to update the Paid Memberships plugin to version 2.3.3 or higher.
Where can I find more information about CVE-2020-5579?
You can find more information about CVE-2020-5579 at the following references: [Reference 1](https://jvn.jp/en/jp/JVN20248858/index.html) and [Reference 2](https://www.paidmembershipspro.com/pmpro-update-2-3-3-security-release/).