Lucene search

K
cvelistMitreCVELIST:CVE-2014-9305
HistoryDec 08, 2014 - 4:00 p.m.

CVE-2014-9305

2014-12-0816:00:00
mitre
www.cve.org
3

AI Score

7.9

Confidence

Low

EPSS

0.001

Percentile

46.4%

SQL injection vulnerability in the shortcodeProductsTable function in models/Cart66Ajax.php in the Cart66 Lite plugin before 1.5.2 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a shortcode_products_table action to wp-admin/admin-ajax.php.

AI Score

7.9

Confidence

Low

EPSS

0.001

Percentile

46.4%