CVE-2022-2269
08.08.2022, 14:15
The Website File Changes Monitor WordPress plugin before 1.8.3 does not sanitise and escape user input before using it in a SQL statement via an action available to users with the manage_options capability (by default admins), leading to an SQL injection
Vendor | Product | Version |
---|---|---|
wpwhitesecurity | website_file_changes_monitor | 𝑥 < 1.8.3 |
𝑥
= Vulnerable software versions