cve/2024/CVE-2024-47312.md
2025-09-29 21:09:30 +02:00

19 lines
917 B
Markdown

### [CVE-2024-47312](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-47312)
![](https://img.shields.io/static/v1?label=Product&message=Classic%20Editor%20and%20Classic%20Widgets&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-89%20Improper%20Neutralization%20of%20Special%20Elements%20used%20in%20an%20SQL%20Command%20('SQL%20Injection')&color=brightgreen)
### Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPGrim Classic Editor and Classic Widgets allows SQL Injection.This issue affects Classic Editor and Classic Widgets: from n/a through 1.4.1.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/20142995/nuclei-templates
- https://github.com/cyb3r-w0lf/nuclei-template-collection