NA

CVE-2023-1274

Published: 17/04/2023 Updated: 07/11/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The Pricing Tables For WPBakery Page Builder (formerly Visual Composer) WordPress plugin prior to 3.0 does not validate some shortcode attributes before using them to generate paths passed to include function/s, allowing any authenticated users such as subscriber to perform LFI attacks

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

pricing tables for wpbakery page builder project pricing tables for wpbakery page builder