Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-33977 | The All In One Redirection WordPress plugin before 2.2.0 does not properly sanitise and escape multiple parameters before using them in an SQL statement, leading to a SQL injection exploitable by high privilege users such as admin. |
Tue, 12 Nov 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-11-12T14:08:07.018Z
Reserved: 2023-05-03T13:44:36.032Z
Link: CVE-2023-2493
Updated: 2024-08-02T06:26:09.150Z
Status : Modified
Published: 2023-07-10T16:15:51.120
Modified: 2024-11-21T07:58:43.250
Link: CVE-2023-2493
No data.
OpenCVE Enrichment
No data.
No weakness.
EUVD