Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-44pg-8763-mhc9

Опубликовано: 12 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

The Smart Manager WordPress plugin before 8.28.0 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.

The Smart Manager WordPress plugin before 8.28.0 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.

EPSS

Процентиль: 82%
0.01789
Низкий

7.2 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.2
nvd
почти 2 года назад

The Smart Manager WordPress plugin before 8.28.0 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.

EPSS

Процентиль: 82%
0.01789
Низкий

7.2 High

CVSS3

Дефекты

CWE-89