Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-12949
HistoryAug 18, 2017 - 6:29 p.m.

Design/Logic Flaw

2017-08-1818:29:00
PRIOn knowledge base
www.prio-n.com
3

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

37.0%

lib\modules\contributors\contributor_list_table.php in the Podlove Podcast Publisher plugin 2.5.3 and earlier for WordPress has SQL injection in the orderby parameter to wp-admin/admin.php, exploitable through CSRF.

CPENameOperatorVersion
podlove_podcast_publishereq2.5.3

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

37.0%

Related for PRION:CVE-2017-12949