cleantalk
Vulnerabilities and Security Researches

Asgaros Forum, CVE-2021-25045

CVE, Research URL

CVE-2021-25045

Application

Asgaros Forum

Published on
Jan 24, 2022
Research Description
The Asgaros Forum WordPress plugin before 1.15.15 does not validate or escape the forum_id parameter before using it in a SQL statement when editing a forum, leading to an SQL injection issue
Affected versions
Min -, max 1.15.15.
Status
vulnerable