CVE-2021-25064
EUVD-2021-1197628.03.2022, 18:15
The Wow Countdowns WordPress plugin through 3.1.2 does not sanitize user input into the 'did' parameter and uses it in a SQL statement, leading to an authenticated SQL Injection.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| wow-company | wow_countdowns | 𝑥 ≤ 3.1.2 |
𝑥
= Vulnerable software versions