8.8
CVSSv3

CVE-2022-24663

Published: 16/02/2022 Updated: 24/02/2022
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

PHP Everywhere <= 2.0.3 included functionality that allowed execution of PHP Code Snippets via WordPress shortcodes, which can be used by any authenticated user.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

php everywhere project php everywhere

Exploits

PHP Everywhere versions 203 and below suffer from multiple remote code execution vulnerabilities ...