GobyVuls/CVE-2021-24762.md
Goby eb31288fc5
Create CVE-2021-24762.md
add CVE-2021-24762
2023-07-14 11:11:19 +08:00

1.5 KiB
Raw Blame History

WordPress plugin perfect survey admin-ajax.php question_id SQL Injection Vulnerability (CVE-2021-24762)

Vulnerability WordPress plugin perfect survey admin-ajax.php question_id SQL Injection Vulnerability (CVE-2021-24762)
Chinese name WordPress perfect survey 插件 admin-ajax.php 文件 question_id 参数 SQL注入漏洞CVE-2021-24762
CVSS core 9.8
FOFA Query (click to view the results directly) body="/wp-content/plugins/perfect-survey"
Number of assets affected 628
Description WordPress plugin perfect survey is a plugin for surveying user feedback issues.WordPress plugin perfect survey version before 1.5.2 has a SQL injection vulnerability, the vulnerability stems from the lack of validation of externally input SQL statements in database-based applications. Attackers can exploit this vulnerability to execute illegal SQL commands to obtain sensitive information such as user passwords.
Impact WordPress plugin perfect survey version before 1.5.2 has a SQL injection vulnerability, the vulnerability stems from the lack of validation of externally input SQL statements in database-based applications. Attackers can exploit this vulnerability to execute illegal SQL commands to obtain sensitive information such as user passwords.