CVE-2019-12240

Severity CVSS v4.0:
Pending analysis
Type:
CWE-502 Deserialization of Untrusted Dat
Publication date:
20/05/2019
Last modified:
23/08/2019

Description

The Virim plugin 0.4 for WordPress allows Insecure Deserialization via s_values, t_values, or c_values in graph.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:virim_project:virim:0.4:*:*:*:*:wordpress:*:*