Lucene search

K
patchstackKrzysztof ZającPATCHSTACK:69BC97D5E3C91DA91018B896E2D887A4
HistoryDec 05, 2021 - 12:00 a.m.

WordPress Modal Window plugin <= 5.2.1 - Remote File Inclusion (RFI) leading to Remote Code Execution (RCE) via CSRF vulnerability

2021-12-0500:00:00
Krzysztof Zając
patchstack.com
10
wordpress modal window
remote file inclusion
remote code execution
csrf
vulnerability
update

EPSS

0.001

Percentile

48.4%

Remote File Inclusion (RFI) leading to Remote Code Execution (RCE) via CSRF vulnerability discovered by Krzysztof Zając in WordPress Modal Window plugin (versions <= 5.2.1).

Solution

           Update the WordPress Modal Window plugin to the latest available version (at least 5.2.2).

EPSS

0.001

Percentile

48.4%

Related for PATCHSTACK:69BC97D5E3C91DA91018B896E2D887A4