Lucene search

K
wpvulndbWpvulndbWPVDB-ID:40CE7E3B-ACF2-4E09-8216-1BB1199D234B
HistoryMar 10, 2021 - 12:00 a.m.

Five Star Restaurant Menu < 2.2.1 - Unauthenticated PHP Object Injection

2021-03-1000:00:00
wpscan.com
9

0.013 Low

EPSS

Percentile

86.1%

The plugin unserialised the fdm_cart cookie value without any sanitisation or validation first, when the Ordering setting of the plugin was enabled, leading to a PHP object injection which could lead to RCE

CPENameOperatorVersion
food-and-drink-menult2.2.1

0.013 Low

EPSS

Percentile

86.1%

Related for WPVDB-ID:40CE7E3B-ACF2-4E09-8216-1BB1199D234B