Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-59819
HistoryMay 07, 2022 - 12:00 a.m.

WordPress SiteSuperCharger plugin SQL注入漏洞

2022-05-0700:00:00
China National Vulnerability Database
www.cnvd.org.cn
16
wordpress
sitesupercharger
sql injection

EPSS

0.002

Percentile

57.6%

WordPress and the WordPress plugin are both products of the WordPress Foundation. WordPress is a set of blogging platforms developed using the PHP language. WordPress plugin is an application plug-in. SQL injection vulnerability exists in versions of WordPress SiteSuperCharger plugin prior to 5.2.0, which stems from the plugin’s failure to validate, clean up, and escape various user inputs before using SQL statements via AJAX operations. An unauthenticated attacker could exploit this vulnerability to conduct SQL injection attacks.

EPSS

0.002

Percentile

57.6%