Lucene search

K
wpvulndbWpvulndbWPVDB-ID:EBA90D3E-8968-41F9-8DC9-91D87A2CD527
HistoryFeb 17, 2023 - 12:00 a.m.

WP Coder < 2.5.4 - Admin+ SQLi

2023-02-1700:00:00
wpscan.com
13
wordpress
coder
sqli
vulnerability
admin
exploitable

EPSS

0.001

Percentile

29.1%

The plugin does not properly sanitise and escape the id parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin

EPSS

0.001

Percentile

29.1%

Related for WPVDB-ID:EBA90D3E-8968-41F9-8DC9-91D87A2CD527