ZeroHour

CVE-2021-24303

PoC ×2
CVSS 3.1
8.8 high
EPSS
2%p75
Published
()
Modified
Description

The JiangQie Official Website Mini Program WordPress plugin before 1.1.1 does not escape or validate the id GET parameter before using it in SQL statements, leading to SQL injection issues

Vendors
jiangqie
Products
official website mini program
Ecosystems
WordPress
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.