CVE-2021-24931

CVE-2021-24931

The Secure Copy Content Protection and Content Locking WordPress plugin before 2.8.2 does not escape the sccp_id parameter of the ays_sccp_results_export_file AJAX action (available to both unauthenticated and authenticated users) before using it in a SQL statement, leading to an SQL injection.

Source: CVE-2021-24931

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다