NA

CVE-2023-4971

Published: 16/10/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

The Weaver Xtreme Theme Support WordPress plugin prior to 6.3.1 unserialises the content of an imported file, which could lead to PHP object injections issues when a high privilege user import a malicious file and a suitable gadget chain is present on the blog.

Vulnerable Product Search on Vulmon Subscribe to Product

weavertheme weaver xtreme theme support