Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8h6c-3pf2-fqm5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The slickquiz plugin through 1.3.7.1 for WordPress allows SQL Injection by Subscriber users, as demonstrated by a /wp-admin/admin.php?page=slickquiz-scores&id= or /wp-admin/admin.php?page=slickquiz-edit&id= or /wp-admin/admin.php?page=slickquiz-preview&id= URI.

The slickquiz plugin through 1.3.7.1 for WordPress allows SQL Injection by Subscriber users, as demonstrated by a /wp-admin/admin.php?page=slickquiz-scores&id= or /wp-admin/admin.php?page=slickquiz-edit&id= or /wp-admin/admin.php?page=slickquiz-preview&id= URI.

EPSS

Процентиль: 64%
0.00464
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
больше 6 лет назад

The slickquiz plugin through 1.3.7.1 for WordPress allows SQL Injection by Subscriber users, as demonstrated by a /wp-admin/admin.php?page=slickquiz-scores&id= or /wp-admin/admin.php?page=slickquiz-edit&id= or /wp-admin/admin.php?page=slickquiz-preview&id= URI.

EPSS

Процентиль: 64%
0.00464
Низкий