Description
WordPress Plugin Ultimate Member-User Profile, Registration, Login, Member Directory, Content Restriction & Membership is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Ultimate Member-User Profile, Registration, Login, Member Directory, Content Restriction & Membership version 1.2.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.2.6 or latest
References
Related Vulnerabilities
Apache HTTP Server Other Vulnerability (CVE-2003-0192)
WordPress Plugin Widgets for WooCommerce Products on Elementor Security Bypass (1.0.5)
MySQL CVE-2013-3794 Vulnerability (CVE-2013-3794)
Joomla! Core Security Bypass (1.6.0 - 3.6.0)
Oracle Database Server CVE-2014-0378 Vulnerability (CVE-2014-0378)