Логотип exploitDog
bind:CVE-2021-24337
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24337

Количество 2

Количество 2

nvd логотип

CVE-2021-24337

больше 4 лет назад

The id GET parameter of one of the Video Embed WordPress plugin through 1.0's page (available via forced browsing) is not sanitised, validated or escaped before being used in a SQL statement, allowing low privilege users, such as subscribers, to perform SQL injection.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-9r6g-wcvh-p5j6

больше 3 лет назад

The id GET parameter of one of the Video Embed WordPress plugin through 1.0's page (available via forced browsing) is not sanitised, validated or escaped before being used in a SQL statement, allowing low privilege users, such as subscribers, to perform SQL injection.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24337

The id GET parameter of one of the Video Embed WordPress plugin through 1.0's page (available via forced browsing) is not sanitised, validated or escaped before being used in a SQL statement, allowing low privilege users, such as subscribers, to perform SQL injection.

CVSS3: 8.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-9r6g-wcvh-p5j6

The id GET parameter of one of the Video Embed WordPress plugin through 1.0's page (available via forced browsing) is not sanitised, validated or escaped before being used in a SQL statement, allowing low privilege users, such as subscribers, to perform SQL injection.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу