CVE-2023-2493
10.07.2023, 16:15
The All In One Redirection WordPress plugin before 2.2.0 does not properly sanitise and escape multiple parameters before using them in an SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.Enginsight
Vendor | Product | Version |
---|---|---|
vsourz | all_in_one_redirection | 𝑥 < 2.2.0 |
𝑥
= Vulnerable software versions