The Custom Popup Builder WordPress plugin before 1.3.1 autoload data from its popup on every pages, as such data can be sent by unauthenticated user, and is not validated in length, this could cause a denial of service on the blog
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/ca2e8feb-15d6-4965-ad9c-8da1bc01e0f4 | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: WPScan
Published: 2022-02-14T09:21:10
Updated: 2023-07-24T09:23:05.549Z
Reserved: 2022-01-13T00:00:00
Link: CVE-2022-0214
JSON object: View
NVD Information
Status : Modified
Published: 2022-02-14T12:15:16.607
Modified: 2023-11-07T03:41:09.477
Link: CVE-2022-0214
JSON object: View
Redhat Information
No data.
CWE