The Popup Builder WordPress plugin... CVE-2022-0228

6.5 AV AC AU C I A
发布: 2022-02-21
修订: 2024-11-21

The Popup Builder WordPress plugin before 4.0.7 does not validate and properly escape the orderby and order parameters before using them in a SQL statement in the admin dashboard, which could allow high privilege users to perform SQL injection

0%
暂无可用Exp或PoC
当前有1条受影响产品信息