Code Injection vulnerability in All in One SEO Wordpress PluginID: oval:org.secpod.oval:def:78118 | Date: (C)2022-03-10 (M)2022-10-10 |
Class: VULNERABILITY | Family: unix |
The host is installed with All in One SEO WordPress Plugin before 4.1.0.2 and is prone to a code injection vulnerability. A flaw is present in the plugin which fails to handle the plugin when it attempts to unserialize values of the .ini file. Successful exploitation could allow attackers to execute arbitrary code.
Product: |
All in One SEO Wordpress Plugin |