Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q7xc-mr7x-v3ph

Опубликовано: 29 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) WordPress plugin before 3.12.5 does not properly sanitize some parameters before inserting them into SQL queries. As a result, high privilege users could perform SQL injection attacks.

The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) WordPress plugin before 3.12.5 does not properly sanitize some parameters before inserting them into SQL queries. As a result, high privilege users could perform SQL injection attacks.

EPSS

Процентиль: 73%
0.00746
Низкий

7.2 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.2
nvd
больше 3 лет назад

The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) WordPress plugin before 3.12.5 does not properly sanitize some parameters before inserting them into SQL queries. As a result, high privilege users could perform SQL injection attacks.

EPSS

Процентиль: 73%
0.00746
Низкий

7.2 High

CVSS3

Дефекты

CWE-89