ZeroHour

CVE-2022-43468

CVSS 3.1
7.5 high
EPSS
<1%p56
Published
()
Modified
Description

External initialization of trusted variables or data stores vulnerability exists in WordPress Popular Posts 6.0.5 and earlier, therefore the vulnerable product accepts untrusted external inputs to update certain internal variables. As a result, the number of views for an article may be manipulated through a crafted input.

Vendors
wordpress popular posts project
Products
wordpress popular posts
Ecosystems
WordPress
Weakness
CWE-665
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.