mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-30 21:39:29 +02:00
774 B
774 B
CVE-2021-24138
Description
Unvalidated input in the AdRotate WordPress plugin, versions before 5.8.4, leads to Authenticated SQL injection via param "id". This requires an admin privileged user.
POC
Reference
- https://wpscan.com/vulnerability/aafac655-3616-4b27-9d0f-1cbc2faf0151
- https://wpscan.com/vulnerability/aafac655-3616-4b27-9d0f-1cbc2faf0151
Github
No PoCs found on GitHub currently.