ZeroHour

CVE-2017-1002018

PoC
CVSS 3.0
9.8 critical
EPSS
2%p84
Published
()
Modified
Description

Vulnerability in wordpress plugin eventr v1.02.2, The edit.php form and attendees.php code do not sanitize input, this allows for blind SQL injection via the event parameter.

Vendors
eventr project
Products
eventr
Ecosystems
WordPress
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.