CVE-2021-24336
07.06.2021, 11:15
The FlightLog WordPress plugin through 3.0.2 does not sanitise, validate or escape various POST parameters before using them a SQL statement, leading to SQL injections exploitable by editor and administrator users
Vendor | Product | Version |
---|---|---|
zavedil | flightlog | 𝑥 ≤ 3.0.2 |
𝑥
= Vulnerable software versions