Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Wp Bannerize Project Subscribe
Filtered by product Wp Bannerize
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-39351 1 Wp Bannerize Project 1 Wp Bannerize 2021-10-14 4.0 MEDIUM 6.5 MEDIUM
The WP Bannerize WordPress plugin is vulnerable to authenticated SQL injection via the id parameter found in the ~/Classes/wpBannerizeAdmin.php file which allows attackers to exfiltrate sensitive information from vulnerable sites. This issue affects versions 2.0.0 - 4.0.2.