CVE-2017-20099
Summary
| CVE | CVE-2017-20099 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-06-27 19:15:00 UTC |
| Updated | 2022-07-06 20:40:00 UTC |
| Description | A vulnerability was found in Analytics Stats Counter Statistics Plugin 1.2.2.5 and classified as critical. This issue affects some unknown processing. The manipulation leads to code injection. The attack may be initiated remotely. |
Risk And Classification
Problem Types: CWE-94
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Analytics Stats Counter Statistics Project | Analytics Stats Counter Statistics | 1.2.2.5 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Full Disclosure: Analytics Stats Counter Statistics WordPress Plugin unauthenticated PHP Object injection vulnerability | MISC | seclists.org | |
| CVE-2017-20099 | Analytics Stats Counter Statistics Plugin code injection | MISC | vuldb.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.