Cozmoslabs

Membership & Content Restriction - Paid Member Subscriptions

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.11%
  • Veröffentlicht 14.01.2025 10:15:07
  • Zuletzt bearbeitet 22.01.2025 17:29:01

The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 2.13.7. This is due to the pms_pb_payment_redirect_...

  • EPSS 0.46%
  • Veröffentlicht 18.12.2024 12:15:08
  • Zuletzt bearbeitet 04.02.2025 15:51:41

The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.13.4 via the WordPress core search featu...

  • EPSS 0.91%
  • Veröffentlicht 09.11.2024 12:15:16
  • Zuletzt bearbeitet 29.01.2025 19:16:00

The The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.13.0. This is due to the software all...

  • EPSS 1.68%
  • Veröffentlicht 02.10.2024 08:15:03
  • Zuletzt bearbeitet 08.10.2024 15:34:13

The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all v...

  • EPSS 0.22%
  • Veröffentlicht 29.02.2024 01:43:49
  • Zuletzt bearbeitet 27.01.2025 17:15:51

The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the pms_stripe_connect_handle_authorizat...

  • EPSS 0.22%
  • Veröffentlicht 29.02.2024 01:43:49
  • Zuletzt bearbeitet 22.01.2025 16:49:11

The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the creating_pricing_table_page function...

Exploit
  • EPSS 1.54%
  • Veröffentlicht 13.09.2021 18:15:19
  • Zuletzt bearbeitet 21.11.2024 05:53:38

The Membership & Content Restriction – Paid Member Subscriptions WordPress plugin before 2.4.2 did not sanitise, validate or escape its order and orderby parameters before using them in SQL statement, leading to Authenticated SQL Injections in the Me...