📦

pool

Vendor: wordpress

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 3.86% Exploit Prob.
Latest CVE CVE-2012-2677 Jul 25

Security Vulnerability Index

Page 1 / 1
5.0 CVSS

Integer overflow in the ordered_malloc function in boost/pool/pool.hpp in Boost Pool before 3.9 makes it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large memory chunk size value, which causes less memory to be allocated than expected.

EPSS: 3.89%
4.3 CVSS
CVE-2007-4482
Exploit Found

Cross-site scripting (XSS) vulnerability in index.php in the Pool 1.0.7 theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).

EPSS: 3.82%