9.8
CVSSv3

CVE-2023-6623

Published: 15/01/2024 Updated: 19/01/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The Essential Blocks WordPress plugin prior to 4.4.3 does not prevent unauthenticated attackers from overwriting local variables when rendering templates over the REST API, which may lead to Local File Inclusion attacks.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wpdeveloper essential blocks

Vendor Advisories

Check Point Reference: CPAI-2023-1516 Date Published: 12 Feb 2024 Severity: Critical ...