Deserialization of Untrusted Data vulnerability in Liquid Web GiveWP allows Object Injection.This issue affects GiveWP: from n/a through 3.14.1.
Metrics
Affected Vendors & Products
References
History
Mon, 19 Aug 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Liquidweb
Liquidweb givewp |
|
CPEs | cpe:2.3:a:liquidweb:givewp:*:*:*:*:*:*:*:* | |
Vendors & Products |
Liquidweb
Liquidweb givewp |
|
Metrics |
ssvc
|
Mon, 19 Aug 2024 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Deserialization of Untrusted Data vulnerability in Liquid Web GiveWP allows Object Injection.This issue affects GiveWP: from n/a through 3.14.1. | |
Title | WordPress GiveWP plugin <= 3.14.1 - Unauthenticated PHP Object Injection vulnerability | |
Weaknesses | CWE-502 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Patchstack
Published: 2024-08-19T16:51:49.099Z
Updated: 2024-08-22T15:49:06.785Z
Reserved: 2024-06-03T11:44:54.521Z
Link: CVE-2024-37099
Vulnrichment
Updated: 2024-08-19T18:18:19.614Z
NVD
Status : Awaiting Analysis
Published: 2024-08-19T17:15:07.700
Modified: 2024-08-19T18:36:20.123
Link: CVE-2024-37099
Redhat
No data.