Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vgw7-4fx3-67r7

Опубликовано: 26 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

The Menu Item Visibility Control WordPress plugin through 0.5 doesn't sanitize and validate the "Visibility logic" option for WordPress menu items, which could allow highly privileged users to execute arbitrary PHP code even in a hardened environment.

The Menu Item Visibility Control WordPress plugin through 0.5 doesn't sanitize and validate the "Visibility logic" option for WordPress menu items, which could allow highly privileged users to execute arbitrary PHP code even in a hardened environment.

EPSS

Процентиль: 76%
0.00978
Низкий

7.2 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 7.2
nvd
около 3 лет назад

The Menu Item Visibility Control WordPress plugin through 0.5 doesn't sanitize and validate the "Visibility logic" option for WordPress menu items, which could allow highly privileged users to execute arbitrary PHP code even in a hardened environment.

EPSS

Процентиль: 76%
0.00978
Низкий

7.2 High

CVSS3

Дефекты

CWE-94