nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-45077 CVE-2022-45077
MEDIUM
WordPress Betheme theme <= 26.5.1.4 - Auth. PHP Object Injection vulnerability
Record summary
CVE-2022-45077 has a selected CVSS score of 6.3 (medium).
Description
Auth. (subscriber+) PHP Object Injection vulnerability in Betheme theme <= 26.5.1.4 on WordPress.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Nov 17, 2022 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 20, 2025 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
BethemeBrowse Muffingroup / Betheme | VulnCheck | Version data not supplied | |
Betheme (WordPress theme)Browse Muffingroup / Betheme (WordPress theme) | CVE List | <= 26.5.1.4 to ≤ 26.5.1.4 | affected |
References
3patchstack.com
https://patchstack.com/database/vulnerability/betheme/wordpress-betheme-theme-26-5-1-4-auth-php-object-injection-vulnerability?_s_id=cve themeforest.net
https://themeforest.net/item/betheme-responsive-multipurpose-wordpress-theme/7758048