cleantalk
Vulnerabilities and Security Researches

404 Solution, CVE-2024-1068

CVE, Research URL

CVE-2024-1068

Application

404 Solution

Published on
Mar 11, 2024
Research Description
The 404 Solution WordPress plugin before 2.35.8 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admins.
Affected versions
max 2.35.8.
Status
vulnerable