Логотип exploitDog
bind:CVE-2023-6035
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-6035

Количество 2

Количество 2

nvd логотип

CVE-2023-6035

около 2 лет назад

The EazyDocs WordPress plugin before 2.3.4 does not properly sanitize and escape "data" parameter before using it in an SQL statement via an AJAX action, which could allow any authenticated users, such as subscribers, to perform SQL Injection attacks.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-gf95-rw86-w2vf

около 2 лет назад

The EazyDocs WordPress plugin before 2.3.4 does not properly sanitize and escape "data" parameter before using it in an SQL statement via an AJAX action, which could allow any authenticated users, such as subscribers, to perform SQL Injection attacks.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-6035

The EazyDocs WordPress plugin before 2.3.4 does not properly sanitize and escape "data" parameter before using it in an SQL statement via an AJAX action, which could allow any authenticated users, such as subscribers, to perform SQL Injection attacks.

CVSS3: 8.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-gf95-rw86-w2vf

The EazyDocs WordPress plugin before 2.3.4 does not properly sanitize and escape "data" parameter before using it in an SQL statement via an AJAX action, which could allow any authenticated users, such as subscribers, to perform SQL Injection attacks.

CVSS3: 8.8
0%
Низкий
около 2 лет назад

Уязвимостей на страницу