Description
The Ad Inserter WordPress plugin before 2.7.27 unserializes user input provided via the settings, which could allow high privilege users such as admin to perform PHP Object Injection when a suitable gadget is present
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 24 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-01-24T20:20:10.676Z
Reserved: 2023-03-21T13:30:49.763Z
Link: CVE-2023-1549
Updated: 2024-08-02T05:49:11.685Z
Status : Modified
Published: 2023-05-15T13:15:10.353
Modified: 2025-01-24T21:15:09.820
Link: CVE-2023-1549
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.