CVE-2022-4794

Publication date

2023-01-30 20:31:32

Family

WPScan

State

PUBLISHED

Description

The AAWP WordPress plugin before 3.12.3 can be used to abuse trusted domains to load malware or other files through it (Reflected File Download) to bypass firewall rules in companies.