PT-2023-30121 · Tiencop · Wp Extra

Tp Cyber Security

·

Published

2023-12-29

·

Updated

2024-01-04

·

CVE-2023-46623

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions WP EXtra versions n/a through 6.2
Description The issue is related to an Improper Control of Generation of Code ('Code Injection') vulnerability in TienCOP WP EXtra. This allows for code injection, which can be exploited by attackers.
Recommendations For WP EXtra versions n/a through 6.2, update to a version later than 6.2 to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-46623

Affected Products

Wp Extra