CVE-2020-6859: Medium severity ultimatemember Ultimate Member Wordpress vulnerability
Multiple Insecure Direct Object Reference vulnerabilities in includes/core/class-files.php in the Ultimate Member plugin through 2.1.2 for WordPress allow remote attackers to change other users' profiles and cover photos via a modified userid parameter. This is related to ajaximageupload and ajaxresizeimage.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-6859?
CVE-2020-6859 is a vulnerability in the Ultimate Member plugin for WordPress that allows remote attackers to change other users' profiles and cover photos.
What is the severity of CVE-2020-6859?
CVE-2020-6859 has a severity rating of medium with a CVSS score of 5.3.
How does CVE-2020-6859 work?
CVE-2020-6859 exploits insecure direct object reference vulnerabilities in the Ultimate Member plugin's includes/core/class-files.php file, allowing attackers to modify user profiles by manipulating the user_id parameter.
Which version of the Ultimate Member plugin is affected by CVE-2020-6859?
The Ultimate Member plugin version 2.1.2 for WordPress is affected by CVE-2020-6859.
Is there a fix for CVE-2020-6859?
Yes, an official fix for CVE-2020-6859 has been released by the Ultimate Member plugin developers. It is recommended to update to the latest version of the plugin to mitigate the vulnerability.