VYPR
Unrated severityNVD Advisory· Published Sep 13, 2021· Updated Aug 3, 2024

Block and Stop Bad Bots < 6.60 - Authenticated SQL Injections

CVE-2021-24727

Description

The StopBadBots WordPress plugin before 6.60 did not validate or escape the order and orderby GET parameter in some of its admin dashboard pages, leading to Authenticated SQL Injections

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.