CVE-2022-29446
MEDIUM
Published 2022-05-19T15:14:02.030Z
Actions:
CVSS Score
V3.1
6.8
/10
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Base Score Metrics
Exploitability: N/A
Impact: N/A
EPSS Score
v2023.03.01
0.001
probability
of exploitation in the wild
There is a 0.1% chance that this vulnerability will be exploited in the wild within the next 30 days.
Updated: 2025-01-25
Exploit Probability
Percentile: 0.407
Higher than 40.7% of all CVEs
Attack Vector Metrics
Impact Metrics
Description
Authenticated (administrator or higher role) Local File Inclusion (LFI) vulnerability in Wow-Company's Counter Box plugin <= 1.1.1 at WordPress.
Available Exploits
No exploits available for this CVE.
Related News
No news articles found for this CVE.
Affected Products
Affected Versions:
WordPress Vulnerability
Identified and analyzed by Wordfence
Software Type
Plugin
Patch Status
Patched
Published
May 16, 2022
Software Details
Software Name
Counter Box: Add Engaging Countdowns, Timers & Counters to Your WordPress Site
Software Slug
counter-box
Affected Versions
* - 1.1.1
Patched Versions
1.2
Remediation
Update to version 1.2, or a newer patched version
© Defiant Inc. Data provided by Wordfence.
References
Published: 2022-05-19T15:14:02.030Z
Last Modified: 2025-02-20T20:22:17.668Z
Copied to clipboard!