CVE-2021-25064
28.03.2022, 18:15
The Wow Countdowns WordPress plugin through 3.1.2 does not sanitize user input into the 'did' parameter and uses it in a SQL statement, leading to an authenticated SQL Injection.
Vendor | Product | Version |
---|---|---|
wow-company | wow_countdowns | 𝑥 ≤ 3.1.2 |
𝑥
= Vulnerable software versions