cleantalk
Vulnerabilities and Security Researches

WordPress CRM, Email & Marketing Automation for WordPress | Award Winner — Groundhogg, CVE-2019-15647

CVE, Research URL

CVE-2019-15647

Published on
Aug 27, 2019
Research Description
The groundhogg plugin before 1.3.5 for WordPress has wp-admin/admin-ajax.php?action=bulk_action_listener remote code execution.
Affected versions
Min -, max 2.0.9.11.
Status
vulnerable