Vulnerabilities > CVE-2022-1688 - Unspecified vulnerability in Datainterlock Note Press
Attack vector
NETWORK Attack complexity
LOW Privileges required
HIGH Confidentiality impact
NONE Integrity impact
LOW Availability impact
NONE Summary
The Note Press WordPress plugin through 0.1.10 does not sanitise and escape the id parameter before using it in various SQL statement via the admin dashboard, leading to SQL Injections
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 9 |