9.8
CVSSv3

CVE-2023-3211

Published: 16/01/2024 Updated: 22/01/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The WordPress Database Administrator WordPress plugin up to and including 1.0.3 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

Vulnerable Product Search on Vulmon Subscribe to Product

dmparekh wordpress database administrator