CVE-2024-0687: Restrict User Access – Ultimate Membership & Content Protection <= 2.5 - Information Exposure
Published Mar 13, 2024
·Updated
The Restrict User Access – Ultimate Membership & Content Protection plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.5 via API. This makes it possible for unauthenticated attackers to obtain the contents of posts and pages via API.
Affected Software
2 affected components
Dev.institute Restrict User Access Wordpress<2.6
Ultimate Membership & Content Protection Restrict User Access<=2.5
Remediation
Event History
Mar 13, 2024
CVE Published
via MITRE·03:27 PM
Data Sourced
via MITRE·03:27 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software