Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-55r4-r6gc-57rx

Опубликовано: 05 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

The Welcart e-Commerce WordPress plugin before 2.9.5 unserializes user input from cookies, which could allow unautehtniacted users to perform PHP Object Injection when a suitable gadget is present on the blog

The Welcart e-Commerce WordPress plugin before 2.9.5 unserializes user input from cookies, which could allow unautehtniacted users to perform PHP Object Injection when a suitable gadget is present on the blog

EPSS

Процентиль: 71%
0.00672
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 лет назад

The Welcart e-Commerce WordPress plugin before 2.9.5 unserializes user input from cookies, which could allow unautehtniacted users to perform PHP Object Injection when a suitable gadget is present on the blog

EPSS

Процентиль: 71%
0.00672
Низкий

9.8 Critical

CVSS3