vulnerability

WordPress Plugin: post-pay-counter: CVE-2017-18583: Deserialization of Untrusted Data

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Sep 16, 2017
Added
May 15, 2025
Modified
May 15, 2025

Description

The Post Pay Counter plugin before 2.731 for WordPress has PHP Object Injection via deserialization of untrusted input via the 'import_settings_content' parameter.

Solution

post-pay-counter-plugin-cve-2017-18583
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.