cleantalk
Vulnerabilities and Security Researches

WP Super Cache, c70b5c107c2a4a5e514363edc507a94735cdb7ef

Application

WP Super Cache

Published on
Sep 25, 2015
Research Description
WP Super Cache [wp-super-cache] < 1.4.5 WP Super Cache <= 1.4.4 - PHP Object Injection The WP Super Cache plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.4.4 via deserialization of untrusted input. This allows attackers to inject a PHP Object into cache files. If the cache file is accessed, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.
Affected versions
max 1.4.5.
Status
vulnerable