PT-2025-35050 · WordPress · Employee Directory – Staff Listing &Amp; Team Directory Plugin For Wordpress
Martino Spagnuolo
·
Publicado
2025-08-28
·
Atualizado
2025-08-28
·
CVE-2025-53243
CVSS v3.1
8.1
Alta
| Vetor | AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
emarket-design Employee Directory – Staff Listing & Team Directory Plugin for WordPress versions through 4.5.3
Description
The Employee Directory – Staff Listing & Team Directory Plugin for WordPress is susceptible to object injection due to deserialization of untrusted data. This issue allows for potential code execution.
Recommendations
Update Employee Directory – Staff Listing & Team Directory Plugin for WordPress to a version later than 4.5.3.
Correção
Deserialization of Untrusted Data
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Employee Directory – Staff Listing &Amp; Team Directory Plugin For Wordpress