CRITICAL
An attacker could send a specifically crafted payload to the XML-RPC invocation script and trigger the unserialize() call on the "what" parameter in the "openads.spc" RPC method
Published May 6, 2019
9.8
CRITICALCVSS 3.0
EPSS 57.02%
Description
Affected products
Remediation
References (4)
Change history (0)
No recorded changes yet.