CVE-2014-8802
23.01.2015, 15:59
The Pie Register plugin before 2.0.14 for WordPress does not properly restrict access to certain functions in pie-register.php, which allows remote attackers to (1) add a user by uploading a crafted CSV file or (2) activate a user account via a verifyit action.Enginsight
Vendor | Product | Version |
---|---|---|
genetechsolutions | pie_register | 𝑥 ≤ 2.0.13 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References