Aqua Vulnerability Database
Get Demo
Vulnerabilities
Misconfiguration
Runtime Security
Compliance
CVE Vulnerabilities
CVE-2022-38070
Published:
Sep 09, 2022
| Modified:
Nov 21, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
Additional information
NVD
https://nvd.nist.gov/vuln/detail/CVE-2022-38070
CWE
https://cwe.mitre.org/data/definitions/264.html
Privilege Escalation (subscriber+) vulnerability in Pop-up plugin <= 1.1.5 at WordPress.
Affected Software
Name
Vendor
Start Version
End Version
Pop-up
Mypopups
*
1.1.5 (including)
References
https://patchstack.com/database/vulnerability/pop-up-pop-up/wordpress-pop-up-plugin-1-1-5-privilege-escalation-vulnerability/_s_id=cve
https://wordpress.org/plugins/pop-up-pop-up/#developers
https://patchstack.com/database/vulnerability/pop-up-pop-up/wordpress-pop-up-plugin-1-1-5-privilege-escalation-vulnerability/_s_id=cve
https://wordpress.org/plugins/pop-up-pop-up/#developers
Aqua Container Security