WordPress Paytm Donation 漏洞列表
共找到 2 个与 WordPress Paytm Donation 相关的漏洞
📅 加载漏洞趋势中...
-
CVE-2021-24554: WordPress Paytm Donation <=1.3.2 - Authenticated SQL Injection POC
WordPress Paytm Donation plugin through 1.3.2 is susceptible to authenticated SQL injection. The plugin does not sanitize, validate, or escape the id GET parameter before using it in a SQL statement when deleting donations. An attacker can possibly obtain sensitive information, modify data, and/or execute unauthorized administrative operations in the context of the affected site. -
CVE-2021-24554: WordPress Paytm Donation <=1.3.2 - Authenticated SQL Injection POC
WordPress Paytm Donation plugin through 1.3.2 is susceptible to authenticated SQL injection. The plugin does not sanitize, validate, or escape the id GET parameter before using it in a SQL statement when deleting donations. An attacker can possibly obtain sensitive information, modify data, and/or execute unauthorized administrative operations in the context of the affected site.