Описание
External initialization of trusted variables or data stores vulnerability exists in WordPress Popular Posts 6.0.5 and earlier, therefore the vulnerable product accepts untrusted external inputs to update certain internal variables. As a result, the number of views for an article may be manipulated through a crafted input.
Ссылки
- Third Party Advisory
- Third Party Advisory
- Product
- Third Party Advisory
- Third Party Advisory
- Product
Уязвимые конфигурации
Конфигурация 1Версия до 6.0.5 (включая)
cpe:2.3:a:wordpress_popular_posts_project:wordpress_popular_posts:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 66%
0.00523
Низкий
7.5 High
CVSS3
Дефекты
CWE-665
CWE-665
Связанные уязвимости
CVSS3: 7.5
github
около 3 лет назад
External initialization of trusted variables or data stores vulnerability exists in WordPress Popular Posts 6.0.5 and earlier, therefore the vulnerable product accepts untrusted external inputs to update certain internal variables. As a result, the number of views for an article may be manipulated through a crafted input.
EPSS
Процентиль: 66%
0.00523
Низкий
7.5 High
CVSS3
Дефекты
CWE-665
CWE-665