CVE-2022-4043

The WP Custom Admin Interface WordPress plugin before 7.29 unserialize user input provided via the settings, which could allow high privilege users such as admin to perform PHP Object Injection when a suitable gadget is present.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:wp_custom_admin_interface_project:wp_custom_admin_interface:*:*:*:*:*:*:*:*

History

07 Nov 2023, 03:56

Type Values Removed Values Added
CWE CWE-502

Information

Published : 2023-01-09 23:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-4043

Mitre link : CVE-2022-4043

CVE.ORG link : CVE-2022-4043


JSON object : View

Products Affected

wp_custom_admin_interface_project

  • wp_custom_admin_interface
CWE

No CWE.