CVE-2022-0214
Popup | Custom Popup Builder < 1.3.1 - Unauthenticated Denial of Service
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 1.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
14 feb 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
The Custom Popup Builder WordPress plugin before 1.3.1 autoload data from its popup on every pages, as such data can be sent by unauthenticated user, and is not validated in length, this could cause a denial of service on the blog
Productos afectados
Unknown · Popup | Custom Popup Builder¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →