CVE-2015-4038 | WP Membership Plugin 1.2.3 on WordPress wp-admin/admin-ajax.php access control (ID 132012 / EDB-37074)
A vulnerability classified as critical was found in WP Membership Plugin 1.2.3 on WordPress. Affected by this vulnerability is an unknown functionality of the file wp-admin/admin-ajax.php. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2015-4038. The attack can be launched remotely. Furthermore, there is an exploit available.