Lucene search

K
patchstackJerome Bruandet (NinTechNet)PATCHSTACK:062661746B8F95E15FCE7B0D84E63AB0
HistoryJun 11, 2021 - 12:00 a.m.

WordPress Popular Posts plugin <= 5.3.2 - Authenticated Code Injection vulnerability leading to Remote Code Execution (RCE)

2021-06-1100:00:00
Jerome Bruandet (NinTechNet)
patchstack.com
18

0.955 High

EPSS

Percentile

99.4%

Authenticated Code Injection vulnerability leading to Remote Code Execution (RCE) discovered by NinTechNet in WordPress Popular Posts plugin (versions <= 5.3.2).

Solution

           Update the WordPress Popular Posts plugin to the latest available version (at least 5.3.3).
CPENameOperatorVersion
wordpress popular postsle5.3.2

0.955 High

EPSS

Percentile

99.4%