CVE-2023-44982 is a high-severity sensitive information exposure vulnerability affecting Perfect Images (Manage Image Sizes, Thumbnails, Replace, Retina) plugin versions up to and including 6.4.5. This vulnerability allows an unauthorized actor to access sensitive information without authentication, posing a significant risk to data confidentiality. The CVSS score of 7.5 reflects its high impact, with a network-based attack vector and low attack complexity. While no active exploitation or public exploit code (Metasploit, ExploitDB) has been observed, Nuclei templates exist, and the vulnerability has not garnered significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 6.4.5CPE matchmatch criteria | cpe:2.3:a:meowapps:perfect_images:*:*:*:*:*:wordpress:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.