Updates CVE

This commit is contained in:
erwanlr 2022-01-10 09:17:32 +01:00
parent 76ce75de96
commit be99e4b8ea

View File

@ -3,7 +3,7 @@
"ID": "CVE-2021-24848",
"ASSIGNER": "contact@wpscan.com",
"STATE": "PUBLIC",
"TITLE": "Mediamatic <= 2.7 - Subscriber+ SQL Injection"
"TITLE": "Mediamatic < 2.8.1 - Subscriber+ SQL Injection"
},
"data_format": "MITRE",
"data_type": "CVE",
@ -21,9 +21,9 @@
"version": {
"version_data": [
{
"version_affected": "<=",
"version_name": "2.7",
"version_value": "2.7"
"version_affected": "<",
"version_name": "2.8.1",
"version_value": "2.8.1"
}
]
}
@ -38,7 +38,7 @@
"description_data": [
{
"lang": "eng",
"value": "The mediamaticAjaxRenameCategory AJAX action of the Mediamatic WordPress plugin through 2.7, available to any authenticated user, does not sanitise the categoryID parameter before using it in a SQL statement, leading to an SQL injection"
"value": "The mediamaticAjaxRenameCategory AJAX action of the Mediamatic WordPress plugin before 2.8.1, available to any authenticated user, does not sanitise the categoryID parameter before using it in a SQL statement, leading to an SQL injection"
}
]
},