CVE-2021-25007 Information
Jun 07, 2022
cve
Description
The MOLIE WordPress plugin through 0.5 does not validate and escape a post parameter before using in a SQL statement leading to an SQL Injection
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Reference
https://wpscan.com/vulnerability/cf907d53-cc4a-4b02-bed3-64754128112c
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
9.8
Share on: