Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-0863

The WP SVG Icons WordPress plugin through 3.2.3 does not properly validate uploaded custom icon packs, allowing an high privileged user like an admin to upload a zip file containing malicious php code, leading to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.23
EPSS Ranking 95.7%
CVSS Severity
CVSS v3 Score 7.2
CVSS v2 Score 6.5
Products affected by CVE-2022-0863


Contact Us

Shodan ® - All rights reserved