Unrated severityNVD Advisory· Published Jun 3, 2015· Updated Jun 17, 2026
CVE-2015-4038
CVE-2015-4038
Description
The WP Membership plugin 1.2.3 for WordPress allows remote authenticated users to gain administrator privileges via an iv_membership_update_user_settings action to wp-admin/admin-ajax.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:wpmembership:wpmembership:1.2.3:*:*:*:*:wordpress:*:*
- Range: =1.2.3
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.