CVE-2023-3460 | Ultimate Member Plugin up to 2.6.6 on WordPress User Meta Update privileges management (EDB-52393)
A vulnerability was found in Ultimate Member Plugin up to 2.6.6 on WordPress and classified as critical. This issue affects some unknown processing of the component User Meta Update Handler. The manipulation leads to improper privilege management.
The identification of this vulnerability is CVE-2023-3460. The attack can only be initiated within the local network. Furthermore, there is an exploit available.