CVE-2021-24394
06.09.2021, 11:15
An id GET parameter of the Easy Testimonial Manager WordPress plugin through 1.2.0 is not sanitised, escaped or validated before inserting to a SQL statement, leading to SQL injection
| Vendor | Product | Version |
|---|---|---|
| easy_testimonial_manager_project | easy_testimonial_manager | 𝑥 ≤ 1.2.0 |
𝑥
= Vulnerable software versions
References