Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Omri Herscovici

Researcher fromCheck Point Research
#14317of 53,633
18.8Total CVSS
Vulnerabilities · 2
High
2
PT-2020-18886
8.8
2020-04-30
WordPress · Learnpress · CVE-2020-6010
**Name of the Vulnerable Software and Affected Versions** LearnPress Wordpress plugin versions prior to and including 3.2.6.7 **Description** The issue is related to SQL Injection. There is no information provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited. **Recommendations** For versions prior to and including 3.2.6.7, update to a version later than 3.2.6.7 to resolve the issue.
PT-2018-1641
10
2018-09-11
Microsoft · Office Word · CVE-2018-8430
**Name of the Vulnerable Software and Affected Versions** Microsoft Word (affected versions not specified) Microsoft Office (affected versions not specified) **Description** A remote code execution issue exists in Microsoft Word when a user opens a specially crafted PDF file. This could allow an attacker to execute arbitrary code in the context of the current user. The vulnerability is related to errors in processing input data. **Recommendations** For Microsoft Word, consider avoiding the use of PDF files from untrusted sources until a fix is available. For Microsoft Office, restrict the opening of specially crafted PDF files to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.