The Collne Welcart e-Commerce plugin before 1.8.3 for WordPress allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via crafted serialized data.
2016-06-25T21:59:07.767
2025-04-12T10:46:40.837
Deferred
CVSSv3.1: 5.6 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | welcart | welcart_e-commerce | < 1.8.3 | Yes |