Vulnerability Details CVE-2021-29654
AjaxSearchPro before 4.20.8 allows Deserialization of Untrusted Data (in the import database feature of the administration panel), leading to Remote Code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.018
EPSS Ranking 83.0%
CVSS Severity
CVSS v3 Score 7.2
CVSS v2 Score 6.5
Products affected by CVE-2021-29654
-
cpe:2.3:a:stackpath:ajaxsearchpro:*