{ "id": "CVE-2024-55982", "sourceIdentifier": "audit@patchstack.com", "published": "2024-12-16T15:15:25.433", "lastModified": "2024-12-16T15:15:25.433", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in richteam Share Buttons \u2013 Social Media allows Blind SQL Injection.This issue affects Share Buttons \u2013 Social Media: from n/a through 1.0.2." }, { "lang": "es", "value": "La vulnerabilidad de neutralizaci\u00f3n incorrecta de elementos especiales utilizados en un comando SQL ('Inyecci\u00f3n SQL') en richteam Share Buttons \u2013 Social Media permite una inyecci\u00f3n SQL ciega. Este problema afecta a los Botones para compartir \u2013 Redes sociales: desde n/a hasta 1.0.2." } ], "metrics": { "cvssMetricV31": [ { "source": "audit@patchstack.com", "type": "Secondary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L", "baseScore": 9.3, "baseSeverity": "CRITICAL", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "CHANGED", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "availabilityImpact": "LOW" }, "exploitabilityScore": 3.9, "impactScore": 4.7 } ] }, "weaknesses": [ { "source": "audit@patchstack.com", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-89" } ] } ], "references": [ { "url": "https://patchstack.com/database/wordpress/plugin/rich-web-share-button/vulnerability/wordpress-share-buttons-social-media-plugin-1-0-2-sql-injection-vulnerability-2?_s_id=cve", "source": "audit@patchstack.com" } ] }