PT-2025-35050 · WordPress · Employee Directory – Staff Listing &Amp; Team Directory Plugin For Wordpress

Martino Spagnuolo

·

Publicado

2025-08-28

·

Atualizado

2025-08-28

·

CVE-2025-53243

CVSS v3.1

8.1

Alta

VetorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions emarket-design Employee Directory – Staff Listing & Team Directory Plugin for WordPress versions through 4.5.3
Description The Employee Directory – Staff Listing & Team Directory Plugin for WordPress is susceptible to object injection due to deserialization of untrusted data. This issue allows for potential code execution.
Recommendations Update Employee Directory – Staff Listing & Team Directory Plugin for WordPress to a version later than 4.5.3.

Correção

Deserialization of Untrusted Data

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-53243

Produtos afetados

Employee Directory – Staff Listing &Amp; Team Directory Plugin For Wordpress