Vulnerability Details CVE-2016-10971
The MemberSonic Lite plugin before 1.302 for WordPress has incorrect login access control because only knowlewdge of an e-mail address is required.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 71.2%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2016-10971
-
cpe:2.3:a:membersonic:membersonic:-
-
cpe:2.3:a:membersonic:membersonic:1.2
-
cpe:2.3:a:membersonic:membersonic:1.301