Metrics
Affected Vendors & Products
Solution
Update the WordPress Login Widget for Ultimate Member plugin to the latest available version (at least 1.1.3).
Workaround
No workaround given by the vendor.
Thu, 27 Mar 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 27 Mar 2025 11:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in SuitePlugins Login Widget for Ultimate Member allows PHP Local File Inclusion. This issue affects Login Widget for Ultimate Member: from n/a through 1.1.2. | |
Title | WordPress Login Widget for Ultimate Member plugin <= 1.1.2 - Local File Inclusion vulnerability | |
Weaknesses | CWE-98 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-03-27T18:57:28.514Z
Reserved: 2025-03-26T09:21:23.220Z
Link: CVE-2025-30890

Updated: 2025-03-27T16:09:25.647Z

Status : Awaiting Analysis
Published: 2025-03-27T11:15:49.920
Modified: 2025-03-27T16:45:12.210
Link: CVE-2025-30890

No data.

No data.