Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-59815
HistoryMay 07, 2022 - 12:00 a.m.

WordPress Multiple Shipping Address Woocommerce plugin SQL注入漏洞

2022-05-0700:00:00
China National Vulnerability Database
www.cnvd.org.cn
12
wordpress
sql injection
woocommerce

EPSS

0.002

Percentile

57.6%

WordPress and WordPress plugin are both products of the WordPress Foundation. WordPress is a blogging platform developed using the PHP language. The WordPress plugin is an application plugin. The vulnerability stems from a failure to validate, clean up, and escape various user inputs before using SQL statements via AJAX operations. An unauthenticated attacker could exploit this vulnerability to conduct SQL injection attacks.

EPSS

0.002

Percentile

57.6%