Логотип exploitDog
bind:CVE-2023-4994
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-4994

Количество 2

Количество 2

nvd логотип

CVE-2023-4994

больше 2 лет назад

The Allow PHP in Posts and Pages plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 3.0.4 via the 'php' shortcode. This allows authenticated attackers with subscriber-level permissions or above, to execute code on the server.

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-9rpf-8285-qqrv

больше 2 лет назад

The Allow PHP in Posts and Pages plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 3.0.4 via the 'php' shortcode. This allows authenticated attackers with subscriber-level permissions or above, to execute code on the server.

CVSS3: 9.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-4994

The Allow PHP in Posts and Pages plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 3.0.4 via the 'php' shortcode. This allows authenticated attackers with subscriber-level permissions or above, to execute code on the server.

CVSS3: 9.9
1%
Низкий
больше 2 лет назад
github логотип
GHSA-9rpf-8285-qqrv

The Allow PHP in Posts and Pages plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 3.0.4 via the 'php' shortcode. This allows authenticated attackers with subscriber-level permissions or above, to execute code on the server.

CVSS3: 9.9
1%
Низкий
больше 2 лет назад

Уязвимостей на страницу