Vulnerabilities (CVE)

Filtered by vendor Designmodo Subscribe
Filtered by product Wp Maintenance Mode
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-20154 1 Designmodo 1 Wp Maintenance Mode 2024-02-04 4.0 MEDIUM 4.3 MEDIUM
The WP Maintenance Mode plugin before 2.0.7 for WordPress allows remote authenticated users to discover all subscriber e-mail addresses.
CVE-2018-20156 1 Designmodo 1 Wp Maintenance Mode 2024-02-04 6.5 MEDIUM 7.2 HIGH
The WP Maintenance Mode plugin before 2.0.7 for WordPress allows remote authenticated "site administrator" users to execute arbitrary PHP code throughout a multisite network.
CVE-2018-20155 1 Designmodo 1 Wp Maintenance Mode 2024-02-04 4.0 MEDIUM 4.3 MEDIUM
The WP Maintenance Mode plugin before 2.0.7 for WordPress allows remote authenticated subscriber users to bypass intended access restrictions on changes to plugin settings.