Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xxmh-c24j-hmf3

Опубликовано: 25 окт. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

The Spam protection, AntiSpam, FireWall by CleanTalk WordPress plugin before 5.185.1 does not validate ids before using them in a SQL statement, which could lead to SQL injection exploitable by high privilege users such as admin

The Spam protection, AntiSpam, FireWall by CleanTalk WordPress plugin before 5.185.1 does not validate ids before using them in a SQL statement, which could lead to SQL injection exploitable by high privilege users such as admin

EPSS

Процентиль: 47%
0.00238
Низкий

7.2 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.2
nvd
почти 3 года назад

The Spam protection, AntiSpam, FireWall by CleanTalk WordPress plugin before 5.185.1 does not validate ids before using them in a SQL statement, which could lead to SQL injection exploitable by high privilege users such as admin

EPSS

Процентиль: 47%
0.00238
Низкий

7.2 High

CVSS3

Дефекты

CWE-89