cleantalk
Vulnerabilities and Security Researches

Bitcoin / AltCoin Payment Gateway for WooCommerce & Multivendor store / shop, CVE-2022-4118

CVE, Research URL

CVE-2022-4118

Published on
May 08, 2023
Research Description
The Bitcoin / AltCoin Payment Gateway for WooCommerce & Multivendor store / shop WordPress plugin through 1.7.1 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by authenticated users
Affected versions
Min -, max 1.7.3.
Status
vulnerable