PoC Index

CVE-2022-0989

HIGH 7.5EPSS 1.2%

An unprivileged user could use the functionality of the NS WooCommerce Watermark WordPress plugin through 2.11.3 to load images that hide malware for example from passing malicious domains to hide their trace, by making them pass through the vulnerable domain.

CVSS v3.1
7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
EPSS
1.23% chance of exploitation in the next 30 days, 67th percentile
Published
2022-04-11
Updated
2024-08-02

Proof-of-concept exploits (1)

References

Related