The Download Manager WordPress... CVE-2021-25069

6.5 AV AC AU C I A
发布: 2022-02-21
修订: 2025-03-21

The Download Manager WordPress plugin before 3.2.34 does not sanitise and escape the package_ids parameter before using it in a SQL statement, leading to a SQL injection, which can also be exploited to cause a Reflected Cross-Site Scripting issue

0%
暂无可用Exp或PoC
当前有2条受影响产品信息