Security Advisory

CVE-2022-4302

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-01-02 21:49:18
Last updated 2025-04-10 18:59:42
Assigner WPScan
State PUBLISHED

Description

The White Label CMS WordPress plugin before 2.5 unserializes user input provided via the settings, which could allow high-privilege users such as admin to perform PHP Object Injection when a suitable gadget is present.