Files
CVEs-PoC/2021/CVE-2021-24931.md
T
2025-09-29 21:09:30 +02:00

32 lines
1.5 KiB
Markdown

### [CVE-2021-24931](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-24931)
![](https://img.shields.io/static/v1?label=Product&message=Secure%20Copy%20Content%20Protection%20and%20Content%20Locking&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=2.8.2%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-89%20SQL%20Injection&color=brightgreen)
### Description
The Secure Copy Content Protection and Content Locking WordPress plugin before 2.8.2 does not escape the sccp_id parameter of the ays_sccp_results_export_file AJAX action (available to both unauthenticated and authenticated users) before using it in a SQL statement, leading to an SQL injection.
### POC
#### Reference
- http://packetstormsecurity.com/files/165946/WordPress-Secure-Copy-Content-Protection-And-Content-Locking-2.8.1-SQL-Injection.html
- https://wpscan.com/vulnerability/1cd52d61-af75-43ed-9b99-b46c471c4231
#### Github
- https://github.com/20142995/Goby
- https://github.com/ARPSyndicate/cvemon
- https://github.com/ARPSyndicate/kenzer-templates
- https://github.com/Enes4xd/Enes4xd
- https://github.com/Hacker5preme/Exploits
- https://github.com/HimmelAward/Goby_POC
- https://github.com/NyxAzrael/Goby_POC
- https://github.com/Z0fhack/Goby_POC
- https://github.com/cr0ss2018/cr0ss2018
- https://github.com/enesamaafkolan/enesamaafkolan
- https://github.com/ezelnur6327/Enes4xd
- https://github.com/ezelnur6327/enesamaafkolan
- https://github.com/ezelnur6327/ezelnur6327
- https://github.com/raghad0177/CapstonProject