Limited Black Friday Offer:
WordPress Pricing Deals for WooCommerce <=2.0.2.02 - SQL Injection CVE-2022-1057 Scanner
WordPress Pricing Deals for WooCommerce <=2.0.2.02 allows SQL Injection vulnerability.
Short Info
Level
Critical
Type
Single Scan
Can be used by
Asset Owner
Estimated Time
10 sec
Scan only one
Domain, Ipv4
Parent Category
WordPress Pricing Deals for WooCommerce <=2.0.2.02 - SQL Injection CVE-2022-1057 Scanner Detail
The Pricing Deals for WooCommerce WordPress plugin through 2.0.2.02 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection