ZeroHour

CVE-2022-2754

PoC
CVSS 3.1
9.8 critical
EPSS
38%p98
Published
()
Modified
Description

The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not validate and escape some reservation parameters before using them in SQL statements, which could allow unauthenticated attackers to perform SQL Injection attacks

Vendors
ketchup restaurant reservations project
Products
ketchup restaurant reservations
Ecosystems
WordPress
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.