First published: Thu May 19 2022(Updated: )
Authenticated (administrator or higher role) Local File Inclusion (LFI) vulnerability in Wow-Company's Counter Box plugin <= 1.1.1 at WordPress.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Wow-company Counter Box | <=1.1.1 |
Update to 1.2 or higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-29446 is high with a severity value of 7.2.
The affected software for CVE-2022-29446 is Wow-Company's Counter Box plugin version <= 1.1.1 at WordPress.
The LFI vulnerability in CVE-2022-29446 allows an authenticated user with administrator or higher role to include and read local files on the server.
Yes, there is a fix available for CVE-2022-29446. Please refer to the provided references for more information.
The Common Weakness Enumeration (CWE) ID for CVE-2022-29446 is 552.