Vulnerability Bulletins

PHP Object Injection Vulnerability in DS.DownloadList


System information

   
Affected software Wordpress

Description

https://www.pluginvulnerabilities.com/2017/09/22/php-object-injection-vulnerability-in-ds-downloadlist/For the second time through our proactive monitoring of changes in WordPress plugins for serious vulnerabilities we have found a vulnerability not just as it is added to a plugin, but as the plugin was introduced into the Plugin Directory. There is a manual review done of plugins before they are approved for the Plugin […]

More info:

https://www.pluginvulnerabilities.com/2017/09/22/php-object-injection-vulnerability-in-ds-downloadlist/

Standar resources

Property Value
CVE

Version history

Version Comments Date
1.0 Advisory issued 2017-09-23
Ministerio de Defensa
CNI
CCN
CCN-CERT