CVE-2015-3173: Custom Content Type Manager Project Custom Content Type Manager
High severity, CVSS 7.2. EPSS: 3.3% chance of exploitation in the next 30 days.
custom-content-type-manager Wordpress plugin can be used by an administrator to achieve arbitrary PHP remote code execution.
Affected products
- Custom Content Type Manager Project Custom Content Type Manager: before 0.9.8.6 (fixed in 0.9.8.6)
Published 2022-07-06. Last modified 2026-06-17.