[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Code Injection vulnerability in All in One SEO Wordpress Plugin

ID: oval:org.secpod.oval:def:78118Date: (C)2022-03-10   (M)2022-10-10
Class: VULNERABILITYFamily: unix




The host is installed with All in One SEO WordPress Plugin before 4.1.0.2 and is prone to a code injection vulnerability. A flaw is present in the plugin which fails to handle the plugin when it attempts to unserialize values of the .ini file. Successful exploitation could allow attackers to execute arbitrary code.

Platform:
Linux
Product:
All in One SEO Wordpress Plugin
Reference:
CVE-2021-24307
CVE    1
CVE-2021-24307

© SecPod Technologies