CVE-2021-24866
06.12.2021, 16:15
The WP Data Access WordPress plugin before 5.0.0 does not properly sanitise and escape the backup_date parameter before using it a SQL statement, leading to a SQL injection issue and could allow arbitrary table deletion
Vendor | Product | Version |
---|---|---|
wpdataaccess | wp_data_access | 𝑥 < 5.0.0 |
𝑥
= Vulnerable software versions