Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-43468

Опубликовано: 07 дек. 2022
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

External initialization of trusted variables or data stores vulnerability exists in WordPress Popular Posts 6.0.5 and earlier, therefore the vulnerable product accepts untrusted external inputs to update certain internal variables. As a result, the number of views for an article may be manipulated through a crafted input.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:wordpress_popular_posts_project:wordpress_popular_posts:*:*:*:*:*:wordpress:*:*
Версия до 6.0.5 (включая)

EPSS

Процентиль: 66%
0.00523
Низкий

7.5 High

CVSS3

Дефекты

CWE-665
CWE-665

Связанные уязвимости

CVSS3: 7.5
github
около 3 лет назад

External initialization of trusted variables or data stores vulnerability exists in WordPress Popular Posts 6.0.5 and earlier, therefore the vulnerable product accepts untrusted external inputs to update certain internal variables. As a result, the number of views for an article may be manipulated through a crafted input.

EPSS

Процентиль: 66%
0.00523
Низкий

7.5 High

CVSS3

Дефекты

CWE-665
CWE-665