Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6857-r4gq-xgmw

Опубликовано: 07 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

The WP Data Access WordPress plugin before 5.0.0 does not properly sanitise and escape the backup_date parameter before using it a SQL statement, leading to a SQL injection issue and could allow arbitrary table deletion

The WP Data Access WordPress plugin before 5.0.0 does not properly sanitise and escape the backup_date parameter before using it a SQL statement, leading to a SQL injection issue and could allow arbitrary table deletion

EPSS

Процентиль: 67%
0.00546
Низкий

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
около 4 лет назад

The WP Data Access WordPress plugin before 5.0.0 does not properly sanitise and escape the backup_date parameter before using it a SQL statement, leading to a SQL injection issue and could allow arbitrary table deletion

EPSS

Процентиль: 67%
0.00546
Низкий

Дефекты

CWE-89