CVE-2022-0383
The WP Review Slider WordPress plugin before 11.0 does not sanitise and escape the pid parameter when copying a Twitter source, which could allow a high privilege users to perform SQL Injections attacks
- Affected products
- Wp Review Slider
- Ljapps Wp Review Slider
- < 11.0
- Fix
- Available
- CVSS 3.1
- 7.2 HIGH
- EPSS
- 1.5% (72th percentile)
- Weakness
- CWE-89
- NVD status
- Modified
- Published
- 2022-02-28
CVE-2022-0383 at NVD
1 known exploit for CVE-2022-0383
Proof-of-concept code and exploit modules indexed by Sploitus