4
CVSSv2

CVE-2021-25037

Published: 17/01/2022 Updated: 24/01/2022
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

The All in One SEO WordPress plugin prior to 4.1.5.3 is affected by an authenticated SQL injection issue, which exists during an internal audit by the Jetpack Scan team, and could grant attackers access to privileged information from the affected site’s database (e.g., usernames and hashed passwords).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

aioseo all in one seo