First published: Fri Mar 06 2020(Updated: )
The RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote authenticated users (with minimal privileges) to send arbitrary emails on behalf of the site via class_rm_user_services.php send_email_user_view.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Metagauss Registrationmagic | <=4.6.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.