CVE-2023-52200: WordPress ARMember Plugin <= 4.0.22 is vulnerable to Cross Site Request Forgery (CSRF) leading to PHP Object Injection
Cross-Site Request Forgery (CSRF), Deserialization of Untrusted Data vulnerability in Repute Infosystems ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup.This issue affects ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup: n/a.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-52200?
CVE-2023-52200 is classified as a high severity vulnerability due to its potential for Cross-Site Request Forgery and deserialization of untrusted data.
How do I fix CVE-2023-52200?
To fix CVE-2023-52200, upgrade the ARMember plugin to the latest version that resolves this vulnerability.
Which versions are affected by CVE-2023-52200?
CVE-2023-52200 affects all versions of the ARMember plugin up to and including version 4.0.22.
What type of vulnerability is CVE-2023-52200?
CVE-2023-52200 is a Cross-Site Request Forgery (CSRF) and deserialization of untrusted data vulnerability.
Who is impacted by CVE-2023-52200?
Users of the ARMember plugin for WordPress, specifically those using version 4.0.22 or earlier, are impacted by CVE-2023-52200.