Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-54495 | The Enable Media Replace WordPress plugin before 4.1.3 unserializes user input via the Remove Background feature, which could allow Author+ users to perform PHP Object Injection when a suitable gadget is present on the blog |
Wed, 23 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-04-23T16:13:57.330Z
Reserved: 2023-08-30T17:58:08.124Z
Link: CVE-2023-4643
Updated: 2024-08-02T07:31:06.549Z
Status : Modified
Published: 2023-10-16T20:15:15.743
Modified: 2025-04-23T17:16:45.650
Link: CVE-2023-4643
No data.
OpenCVE Enrichment
No data.
No weakness.
EUVD