• Resolved kattouf

    (@kattouf)


    ARMember Lite – Membership Plugin has a known vulnerability that may be affecting this version.< 5.6

    Improper Privilege Management

    The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

    Global score: 8.8 / 10

    Severity: h

    Exploitability: 2.8 / 10

    [+] CVE-2022-42888
    [+] ARMember Premium <= 5.5.1 – Privilege Escalation
    [+] ARMember < 5.6 – Unauthenticated Privilege Escalation< 5.6

    [+] WordPress ARMember Plugin <= 5.5.1 is vulnerable to Privilege Escalation

Viewing 1 replies (of 1 total)
  • Plugin Support dimplemodi

    (@dimplemodi)

    Hello,

    I have checked the provided screenshot and currently ARMember Lite version is 4.0.19 so the versions you have provided in the details do not seem of the ARMember plugin. So, there is some confusion.

    There is no such issue in the ARMember Lite plugin too.

    Thanks

Viewing 1 replies (of 1 total)

The topic ‘Vulnerabilities detected..’ is closed to new replies.