Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-99874
HistoryDec 09, 2021 - 12:00 a.m.

WordPress Registrations for the Events Calendar plugin SQL injection vulnerability

2021-12-0900:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.31 Low

EPSS

Percentile

97.0%

WordPress is the Wordpress Foundation’s suite of blogging platforms developed using the PHP language. The platform supports the hosting of personal blogging sites on servers with PHP and MySQL.The WordPress Registrations for the Events Calendar plugin had a SQL injection vulnerability prior to 2.7.6, which stems from the application’s lack of validation of externally entered SQL statements. An attacker could use this vulnerability to execute illegal SQL commands to steal sensitive database data.

0.31 Low

EPSS

Percentile

97.0%