CVE-2014-5155 | Theme My Login Plugin up to 6.3.9 on WordPress Shortcode theme-my-login login_template file inclusion
A vulnerability was found in Theme My Login Plugin up to 6.3.9 on WordPress. It has been declared as critical. This vulnerability affects the function theme-my-login of the component Shortcode Handler. The manipulation of the argument login_template leads to file inclusion.
This vulnerability was named CVE-2014-5155. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.