The BadgeOS WordPress plugin before... CVE-2022-2958

- AV AC AU C I A
发布: 2022-09-19
修订: 2024-11-21

The BadgeOS WordPress plugin before 3.7.1.3 does not sanitise and escape parameters before using them in SQL statements via AJAX actions available to any authenticated users, leading to SQL Injections

0%
暂无可用Exp或PoC
当前有1条受影响产品信息