CVE Vulnerabilities

CVE-2014-8802

Published: Jan 23, 2015 | Modified: Jan 26, 2015
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The Pie Register plugin before 2.0.14 for WordPress does not properly restrict access to certain functions in pie-register.php, which allows remote attackers to (1) add a user by uploading a crafted CSV file or (2) activate a user account via a verifyit action.

Affected Software

Name Vendor Start Version End Version
Pie_register Genetechsolutions * 2.0.13 (including)

References