Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-61432
HistoryAug 11, 2021 - 12:00 a.m.

WordPress SQL Injection Vulnerability (CNVD-2021-61432)

2021-08-1100:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
wordpress
sql injection
side menu lite plugin
vulnerability
php
mysql
administrator role
browser input

EPSS

0.001

Percentile

49.8%

WordPress is a set of blogging platforms developed by the WordPress (Wordpress) Foundation using the PHP language. The platform supports setting up personal blog sites on servers with PHP and MySQL.WordPress Side Menu Lite â add sticky fixed buttonsâ is vulnerable to a SQL injection vulnerability that does not properly clear input values from the browser when constructing SQL statements. An attacker with administrator role or permission to manage the plugin can perform SQL injection attacks.

EPSS

0.001

Percentile

49.8%