CVE-2023-6063
The WP Fastest Cache WordPress plugin before 1.2.2 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users.
- Affected products
- Wp Fastest Cache
- Wpfastestcache Wp Fastest Cache
- < 1.2.2
- Fix
- Available
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 73.7% (99th percentile)
- Weakness
- CWE-89
- NVD status
- Modified
- Published
- 2023-12-04
CVE-2023-6063 at NVD
10 known exploits for CVE-2023-6063
Proof-of-concept code and exploit modules indexed by Sploitus
Exploit for SQL Injection in Wpfastestcache Wp_Fastest_Cache
Exploit for SQL Injection in Wpfastestcache Wp_Fastest_Cache
WordPress WP Fastest Cache 1.2.2 SQL Injection Vulnerability
WP Fastest Cache 1.2.2 - Unauthenticated SQL Injection
WordPress WP Fastest Cache 1.2.2 SQL Injection
Exploit for SQL Injection in Wpfastestcache Wp_Fastest_Cache
Exploit for SQL Injection in Wpfastestcache Wp_Fastest_Cache
WordPress WP Fastest Cache Unauthenticated SQLi (CVE-2023-6063)
WP Fastest Cache < 1.2.2 - Unauthenticated SQL Injection
Exploit for CVE-2023-4666