CVE-2022-4794
30.01.2023, 21:15
The AAWP WordPress plugin before 3.12.3 can be used to abuse trusted domains to load malware or other files through it (Reflected File Download) to bypass firewall rules in companies.Enginsight
| Vendor | Product | Version |
|---|---|---|
| getaawp | amazon_affiliate_wordpress_plugin | 𝑥 < 3.12.3 |
𝑥
= Vulnerable software versions