CVE-2022-3249
05.12.2022, 17:15
The WP CSV Exporter WordPress plugin before 1.3.7 does not properly sanitise and escape some parameters before using them in a SQL statement, allowing high privilege users such as admin to perform SQL injection attacksEnginsight
Vendor | Product | Version |
---|---|---|
wp_csv_exporter_project | wp_csv_exporter | 𝑥 < 1.3.7 |
𝑥
= Vulnerable software versions