ZeroHour

CVE-2023-6528

PoC
CVSS 3.1
8.8 high
EPSS
1%p70
Published
()
Modified
Description

The Slider Revolution WordPress plugin before 6.6.19 does not prevent users with at least the Author role from unserializing arbitrary content when importing sliders, potentially leading to Remote Code Execution.

Vendors
themepunch
Products
slider revolution
Ecosystems
WordPress
Weakness
CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.