Source |
CVE Liste |
Identifiant |
4278521 |
Date de publication |
2022-03-14 15:15:09 (vue: 2022-03-14 17:06:08) |
Titre |
CVE-2022-0254 |
Texte |
The WordPress Zero Spam WordPress plugin before 5.2.11 does not properly sanitise and escape the order and orderby parameters before using them in a SQL statement in the admin dashboard, leading to a SQL injection |
Envoyé |
Oui |
Condensat |
0254 2022 admin before cve dashboard does escape injection leading not order orderby parameters plugin properly sanitise spam sql statement them using wordpress zero |
Tags |
Spam
Guideline
|
Stories |
|
Notes |
|
Move |
|