Логотип exploitDog
bind:CVE-2021-24762
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24762

Количество 2

Количество 2

nvd логотип

CVE-2021-24762

около 4 лет назад

The Perfect Survey WordPress plugin before 1.5.2 does not validate and escape the question_id GET parameter before using it in a SQL statement in the get_question AJAX action, allowing unauthenticated users to perform SQL injection.

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-mchv-2c9q-xfg9

около 4 лет назад

The Perfect Survey WordPress plugin before 1.5.2 does not validate and escape the question_id GET parameter before using it in a SQL statement in the get_question AJAX action, allowing unauthenticated users to perform SQL injection.

CVSS3: 9.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24762

The Perfect Survey WordPress plugin before 1.5.2 does not validate and escape the question_id GET parameter before using it in a SQL statement in the get_question AJAX action, allowing unauthenticated users to perform SQL injection.

CVSS3: 9.8
86%
Высокий
около 4 лет назад
github логотип
GHSA-mchv-2c9q-xfg9

The Perfect Survey WordPress plugin before 1.5.2 does not validate and escape the question_id GET parameter before using it in a SQL statement in the get_question AJAX action, allowing unauthenticated users to perform SQL injection.

CVSS3: 9.8
86%
Высокий
около 4 лет назад

Уязвимостей на страницу