cpe:/a:yellowpencil:visual_css_style_editor:1.0.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:1.2.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:1.7.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:2.2.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:3.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:3.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:3.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.3.5::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.4::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.5::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.5.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.6.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.6.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:4.7.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.0.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.0.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.1.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.1.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.1.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.2.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.2.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.2.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.2.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.2.5::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.2.6::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.2.7::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.2.8::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.2.9::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.3.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.3.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.3.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.3.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.3.4::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.3.5::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.4::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.5::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.6::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.7::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.8::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.4.9::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.4::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.5::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.6::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.7::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.8::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:5.5.9::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.0.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.0.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.0.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.0.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.0.4::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.0.5::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.0.6::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.0.8::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.0.9::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.1.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.1.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.1.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.1.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:6.1.4::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.4::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.5::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.6::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.7::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.8::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.0.9::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.0::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.1::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.2::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.3::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.4::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.5::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.6::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.7::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.8::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.1.9::~~~wordpress~~ cpe:/a:yellowpencil:visual_css_style_editor:7.2.0::~~~wordpress~~ CVE-2019-11886 2019-05-13T01:29:00.910-04:00 2019-05-14T23:29:00.313-04:00 6.8 NETWORK MEDIUM NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov MISC https://wordpress.org/plugins/yellow-pencil-visual-theme-customizer/#developers MISC https://wpvulndb.com/vulnerabilities/9256 MISC https://www.pluginvulnerabilities.com/2019/04/09/recently-closed-visual-css-style-editor-wordpress-plugin-contains-privilege-escalation-vulnerability-that-leads-to-option-update-vulnerability/ MISC https://www.wordfence.com/blog/2019/04/zero-day-vulnerability-in-yellow-pencil-visual-theme-customizer-exploited-in-the-wild/ The WaspThemes Visual CSS Style Editor (aka yellow-pencil-visual-theme-customizer) plugin before 7.2.1 for WordPress allows yp_option_update CSRF, as demonstrated by use of yp_remote_get to obtain admin access.