ZeroHour

CVE-2022-1023

PoC
CVSS 3.1
7.2 high
EPSS
1%p73
Published
()
Modified
Description

The Podcast Importer SecondLine WordPress plugin before 1.3.8 does not sanitise and properly escape some imported data, which could allow SQL injection attacks to be performed by imported a malicious podcast file

Vendors
secondlinethemes
Products
podcast importer secondline
Ecosystems
WordPress
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.