Unauthenticated Arbitrary Options Update vulnerability leading to full website compromise discovered in Image Hover Effects Ultimate (versions <= 9.6.1) WordPress plugin.
References
Configurations
Information
Published : 2021-12-15 11:15
Updated : 2022-10-27 10:00
NVD link : CVE-2021-36888
Mitre link : CVE-2021-36888
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
blocksera
- image_hover_effects