Lucene search

K
cvePatchstackCVE-2023-47236
HistoryDec 20, 2023 - 2:15 p.m.

CVE-2023-47236

2023-12-2014:15:20
CWE-89
Patchstack
web.nvd.nist.gov
62
cve-2023-47236
sql injection
avirtum ipages flipbook
wordpress

CVSS3

7.6

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

18.1%

Improper Neutralization of Special Elements used in an SQL Command (β€˜SQL Injection’) vulnerability in Avirtum iPages Flipbook For WordPress.This issue affects iPages Flipbook For WordPress: from n/a through 1.4.8.

Affected configurations

Nvd
Vulners
Node
ipages_flipbook_projectipages_flipbookRange<1.5.0wordpress
VendorProductVersionCPE
ipages_flipbook_projectipages_flipbook*cpe:2.3:a:ipages_flipbook_project:ipages_flipbook:*:*:*:*:*:wordpress:*:*

CNA Affected

[
  {
    "collectionURL": "https://wordpress.org/plugins",
    "defaultStatus": "unaffected",
    "packageName": "ipages-flipbook",
    "product": "iPages Flipbook For WordPress",
    "vendor": "Avirtum",
    "versions": [
      {
        "changes": [
          {
            "at": "1.5.0",
            "status": "unaffected"
          }
        ],
        "lessThanOrEqual": "1.4.8",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.6

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

18.1%

Related for CVE-2023-47236