9.8

CVE-2020-36726

Exploit

Ultimate Reviews < 2.1.33 - PHP Object Injection

Ultimate Reviews < 2.1.33 - PHP Object Injection

The Ultimate Reviews plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 2.1.32 via deserialization of untrusted input in several vulnerable functions. This allows unauthenticated attackers to inject a PHP Object. No POP chain is present in the vulnerable plugin.
Mögliche Gegenmaßnahme
Ultimate Reviews: Update to version 2.1.33, or a newer patched version
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
EtoilewebdesignUltimate Reviews SwPlatformwordpress Version <= 2.1.32
Weitere Schwachstelleninformationen
SystemWordPress Plugin
Produkt Ultimate Reviews
Version [*, 2.1.33)
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.57% 0.721
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
security@wordfence.com 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-502 Deserialization of Untrusted Data

The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.

https://blog.nintechnet.com/wordpress-ultimate-reviews-plugin-fixed-insecure-deserialization-vulnerability/
Exploit
https://plugins.trac.wordpress.org/changeset/2409141
Release Notes
https://www.wordfence.com/threat-intel/vulnerabilities/id/db30acd7-ce51-45d9-8ff0-6ceea8237a8c?source=cve
Third Party Advisory
https://www.wordfence.com/threat-intel/vulnerabilities/id/db30acd7-ce51-45d9-8ff0-6ceea8237a8c
Third Party Advisory