I'm write a exploit&scan for exploitation SQl Injection in WP from CVE-2022-0412
CVE-2022-0412_Exploit I'm write a exploit&scan for exploitation SQl Injection in WP from CVE-2022-0412
The TI WooCommerce Wishlist WordPress plugin prior to 1.40.1, TI WooCommerce Wishlist Pro WordPress plugin prior to 1.40.1 do not sanitise and escape the item_id parameter before using it in a SQL statement via the wishlist/remove_product REST endpoint, allowing unauthenticated malicious users to perform SQL injection attacks
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
templateinvaders ti woocommerce wishlist |