Description
A vulnerability, which was classified as critical, was found in VaultPress Plugin 1.8.4. This affects an unknown part. The manipulation leads to code injection. It is possible to initiate the attack remotely.
References
http://seclists.org/fulldisclosure/2017/Feb/95
ExploitMailing ListThird Party Advisory
Third Party AdvisoryVDB Entry
http://seclists.org/fulldisclosure/2017/Feb/95
ExploitMailing ListThird Party Advisory
Third Party AdvisoryVDB Entry
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
6.3 · Medium
Information
Source identifier
Vulnerability status
Modified
Published
2022-06-23T03:15:07.560Z
3 years agoLast modified
2024-11-21T02:22:36.187Z
1 year ago