CVE-2021-24554
23.08.2021, 12:15
The Paytm Donation Plugin WordPress plugin through 1.3.2 does not sanitise, validate or escape the id GET parameter before using it in a SQL statement when deleting donations, leading to an authenticated SQL injection issue
Vendor | Product | Version |
---|---|---|
freelancetoindia | paytm-pay | 𝑥 ≤ 1.3.2 |
𝑥
= Vulnerable software versions