Логотип exploitDog
bind:CVE-2021-24345
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24345

Количество 2

Количество 2

nvd логотип

CVE-2021-24345

больше 4 лет назад

The page lists-management feature of the Sendit WP Newsletter WordPress plugin through 2.5.1, available to Administrator users does not sanitise, validate or escape the id_lista POST parameter before using it in SQL statement, therefore leading to Blind SQL Injection.

CVSS3: 6.6
EPSS: Низкий
github логотип

GHSA-hmg5-2fm4-j8w9

больше 3 лет назад

The page lists-management feature of the Sendit WP Newsletter WordPress plugin through 2.5.1, available to Administrator users does not sanitise, validate or escape the id_lista POST parameter before using it in SQL statement, therefore leading to Blind SQL Injection.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24345

The page lists-management feature of the Sendit WP Newsletter WordPress plugin through 2.5.1, available to Administrator users does not sanitise, validate or escape the id_lista POST parameter before using it in SQL statement, therefore leading to Blind SQL Injection.

CVSS3: 6.6
1%
Низкий
больше 4 лет назад
github логотип
GHSA-hmg5-2fm4-j8w9

The page lists-management feature of the Sendit WP Newsletter WordPress plugin through 2.5.1, available to Administrator users does not sanitise, validate or escape the id_lista POST parameter before using it in SQL statement, therefore leading to Blind SQL Injection.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу