Логотип exploitDog
bind:CVE-2024-5522
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-5522

Количество 2

Количество 2

nvd логотип

CVE-2024-5522

больше 1 года назад

The HTML5 Video Player WordPress plugin before 2.5.27 does not sanitize and escape a parameter from a REST route before using it in a SQL statement, allowing unauthenticated users to perform SQL injection attacks

CVSS3: 6.5
EPSS: Высокий
github логотип

GHSA-3vf3-j8cr-x4g6

больше 1 года назад

The HTML5 Video Player WordPress plugin before 2.5.27 does not sanitize and escape a parameter from a REST route before using it in a SQL statement, allowing unauthenticated users to perform SQL injection attacks

CVSS3: 6.5
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-5522

The HTML5 Video Player WordPress plugin before 2.5.27 does not sanitize and escape a parameter from a REST route before using it in a SQL statement, allowing unauthenticated users to perform SQL injection attacks

CVSS3: 6.5
79%
Высокий
больше 1 года назад
github логотип
GHSA-3vf3-j8cr-x4g6

The HTML5 Video Player WordPress plugin before 2.5.27 does not sanitize and escape a parameter from a REST route before using it in a SQL statement, allowing unauthenticated users to perform SQL injection attacks

CVSS3: 6.5
79%
Высокий
больше 1 года назад

Уязвимостей на страницу