High severity7.2NVD Advisory· Published Mar 28, 2022· Updated Jun 17, 2026
CVE-2021-25064
CVE-2021-25064
Description
The Wow Countdowns WordPress plugin through 3.1.2 does not sanitize user input into the 'did' parameter and uses it in a SQL statement, leading to an authenticated SQL Injection.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WordPress/Wow Countdownsdescription
- Range: <=3.1.2
- cpe:2.3:a:wow-company:wow_countdowns:*:*:*:*:*:wordpress:*:*Range: <=3.1.2
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/30c70315-3c17-41f0-a12f-7e3f793e259cnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.