CVE-2018-15576: Hazzardweb Easylogin Pro
High severity, CVSS 8.1. EPSS: 9.7% chance of exploitation in the next 30 days.
An issue was discovered in EasyLogin Pro through 1.3.0. Encryptor.php contains an unserialize call that can be exploited for remote code execution in the decrypt function, if the attacker knows the key.
Affected products
- Hazzardweb Easylogin Pro: up to and including 1.3.0
Published 2018-08-24. Last modified 2026-06-17.