The Better Find and Replace WordPress plugin before 1.3.6 does not properly sanitise, validate and escape various parameters before using them in an SQL statement, leading to an SQL Injection
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-24774 | The Better Find and Replace WordPress plugin before 1.3.6 does not properly sanitise, validate and escape various parameters before using them in an SQL statement, leading to an SQL Injection |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-03T00:03:06.260Z
Reserved: 2022-04-26T00:00:00
Link: CVE-2022-1472
No data.
Status : Modified
Published: 2022-06-20T11:15:09.367
Modified: 2024-11-21T06:40:47.477
Link: CVE-2022-1472
No data.
OpenCVE Enrichment
No data.
EUVD