VYPR

WP-Board

by WordPress

CVEs (1)

  • CVE-2021-24404Sep 20, 2021
    risk 0.00cvss epss 0.05

    The options.php file of the WP-Board WordPress plugin through 1.1 beta accepts a postid parameter which is not sanitised, escaped or validated before inserting to a SQL statement, leading to SQL injection. This is a time based SQLI and in the same function vulnerable parameter…