logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2020-36726

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2020-36726

Description:
The Ultimate Reviews plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 2.1.32 via deserialization of untrusted input in several vulnerable functions. This allows unauthenticated attackers to inject a PHP Object. No POP chain is present in the vulnerable plugin.
Last updated date:
06/13/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
06/13/2023
Reference url to background

https://blog.nintechnet.com/wordpress-ultimate-reviews-plugin-fixed-insecure-deserialization-vulnerability/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy