Files
CVEs-PoC/2022/CVE-2022-4445.md
T
2024-05-25 21:48:12 +02:00

733 B

CVE-2022-4445

Description

The FL3R FeelBox WordPress plugin through 8.1 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

POC

Reference

Github