Files
CVEs-PoC/2021/CVE-2021-24140.md
T
2024-06-18 02:51:15 +02:00

725 B

CVE-2021-24140

Description

Unvalidated input in the Ajax Load More WordPress plugin, versions before 5.3.2, lead to SQL Injection in POST /wp-admin/admin-ajax.php with param repeater=' or sleep(5)#&type=test.

POC

Reference

Github

No PoCs found on GitHub currently.