CVE-2022-1023
PoC —CVSS 3.1
7.2 high
EPSS
1%p73
Published
()
Modified
Description
The Podcast Importer SecondLine WordPress plugin before 1.3.8 does not sanitise and properly escape some imported data, which could allow SQL injection attacks to be performed by imported a malicious podcast file
- Vendors
- secondlinethemes
- Products
- podcast importer secondline
- Ecosystems
- WordPress
- Weakness
- CWE-89
- Vector
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.