Unauthenticated Arbitrary Options Update vulnerability leading to full website compromise discovered in Image Hover Effects Ultimate (versions <= 9.6.1) WordPress plugin.
References
Configurations
Information
Published : 2021-12-15 19:15
Updated : 2021-12-20 16:58
NVD link : CVE-2021-36888
Mitre link : CVE-2021-36888
JSON object : View
Products Affected
blocksera
- image_hover_effects
CWE
CWE-862
Missing Authorization
