The Slider Revolution WordPress plugin through 6.6.12 does not check for valid image files upon import, leading to an arbitrary file upload which may be escalated to Remote Code Execution in some server configurations.
We have discovered 820,866 live websites that are affected by CVE-2023-2359.
| Product | |
| Category | UI Frameworks |
| Vulnerable Domains | 820,866 live websites (60% of Revslider install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 319 versions ( 83% of all versions) |
| 194,853 websites | |
| 82,499 websites | |
| 58,005 websites | |
| 49,414 websites | |
| 36,086 websites | |
| 31,117 websites | |
| 22,956 websites | |
| 22,615 websites | |
| 21,846 websites | |
| 20,415 websites |
| .com | 336,279 websites |
| .de | 43,977 websites |
| .it | 40,847 websites |
| .org | 27,546 websites |
| .co.uk | 21,244 websites |
| .nl | 19,701 websites |
| .com.br | 19,577 websites |
| .fr | 19,353 websites |
| .pl | 16,368 websites |
| .net | 15,273 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| ******.com | *,*** | ||
| ***********.eu | *,*** | ||
| ************.com | *,*** | ||
| ******************.org | *,*** | ||
| ************.ie | *,*** | ||
| **********.org | *,*** | ||
| ************.net | *,*** | ||
| ********************.com | *,*** | ||
| ******************.cat | *,*** | ||
| *****************.com | *,*** |
FAQ