WordPress Plugin JoomSport-for Sports: Team League Football Hockey more PHP Object Injection - CVE-2021-24384 - Vulnerability Database

WordPress Plugin JoomSport-for Sports: Team League Football Hockey more PHP Object Injection - CVE-2021-24384

Critical
Reference: CVE-2021-24384
Title: WordPress Plugin JoomSport-for Sports: Team League Football Hockey more PHP Object Injection
Overview:

WordPress Plugin JoomSport-for Sports: Team League Football Hockey more is prone to a vulnerability that lets remote attackers inject and execute arbitrary code because the application fails to sanitize user-supplied input before being passed to the unserialize() PHP function. Attackers can possibly exploit this issue to execute arbitrary PHP code within the context of the affected webserver process. WordPress Plugin JoomSport-for Sports: Team League Football Hockey more version 5.1.5 is vulnerable prior versions may also be affected.