Published on: Not Yet Published
Last Modified on: 01/23/2023 05:17:00 PM UTC
The CBX Petition for WordPress plugin through 1.0.3 does not properly sanitize and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.
- CVE-2022-4383 has been assigned by [email protected] to track the vulnerability
- Affected Vendor/Software: Unknown - CBX Petition for WordPress version = 0
|CBX Petition for WordPress <= 1.0.3 - Unauthenticated SQLi WordPress Security Vulnerability|| web.archive.org |
Inactive LinkNot Archived