mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 23:27:33 +02:00
805 B
805 B
CVE-2021-24497
Description
The Giveaway WordPress plugin through 1.2.2 is vulnerable to an SQL Injection issue which allows an administrative user to execute arbitrary SQL commands via the $post_id on the options.php page.
POC
Reference
- https://wpscan.com/vulnerability/a1cf08fe-943a-4f14-beb0-25216011b538
- https://wpscan.com/vulnerability/a1cf08fe-943a-4f14-beb0-25216011b538
Github
No PoCs found on GitHub currently.