CVE-2021-24844
08.11.2021, 18:15
The Affiliates Manager WordPress plugin before 2.8.7 does not validate the orderby parameter before using it in an SQL statement in the admin dashboard, leading to an SQL Injection issue
| Vendor | Product | Version |
|---|---|---|
| wpaffiliatemanager | affiliates_manager | 𝑥 < 2.8.7 |
𝑥
= Vulnerable software versions