cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-1208,https://securityvulnerability.io/vulnerability/CVE-2023-1208,HTTP Headers < 1.18.11 - Admin+ Remote Code Execution,"The HTTP Headers plugin for WordPress, prior to version 1.18.11, is susceptible to a vulnerability that allows attackers to write arbitrary data to files on the server. This flaw could potentially lead to Remote Code Execution, enabling attackers to execute malicious code. It underscores the need for website administrators to update their plugins promptly to mitigate security risks.",Wordpress,Http Headers,7.2,HIGH,0.0030900000128895044,false,,false,false,false,,false,false,2023-07-10T16:15:00.000Z,0 CVE-2023-1207,https://securityvulnerability.io/vulnerability/CVE-2023-1207,HTTP Headers < 1.18.8 - Admin+ SQL Injection,"The HTTP Headers plugin for WordPress, prior to version 1.18.8, contains a critical flaw in its import functionality that allows attackers to execute arbitrary SQL commands on the server. This vulnerability can lead to unauthorized access to sensitive data, manipulation of the database, or compromise of the web application. It highlights the importance of keeping plugins updated and monitoring for vulnerabilities to protect your WordPress environment.",Wordpress,Http Headers,7.2,HIGH,0.0012499999720603228,false,,false,false,true,true,false,false,2023-05-15T13:15:00.000Z,0