CVE-2022-0255
The Database Backup for WordPress plugin before 2.5.1 does not properly sanitise and escape the fragment parameter before using it in a SQL statement in the admin dashboard, leading to a SQL injection issue
- Affected products
- Database Backup
- Deliciousbrains Database Backup
- < 2.5.1
- Fix
- Available
- CVSS 3.1
- 7.2 HIGH
- EPSS
- 1.3% (69th percentile)
- Weakness
- CWE-89
- NVD status
- Modified
- Published
- 2022-02-21
CVE-2022-0255 at NVD
1 known exploit for CVE-2022-0255
Proof-of-concept code and exploit modules indexed by Sploitus