5.5
CVSSv3

CVE-2021-24138

Published: 18/03/2021 Updated: 24/03/2021
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
CVSS v3 Base Score: 5.5 | Impact Score: 4.2 | Exploitability Score: 1.2
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:P

Vulnerability Summary

Unvalidated input in the AdRotate WordPress plugin, versions prior to 5.8.4, leads to Authenticated SQL injection via param "id". This requires an admin privileged user.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ajdg adrotate