CyberSec.Space Logo
返回 CVE 浏览器

CVE-2016-0769

HIGH
8.8
CVSS Severity Score
EPSS Score0.0790%
EPSS Percentile44.25th
Published2017年1月23日
Last Modified2026年5月13日

Vulnerability Description

Multiple SQL injection vulnerabilities in eshop-orders.php in the eShop plugin 6.3.14 for WordPress allow (1) remote administrators to execute arbitrary SQL commands via the delid parameter or remote authenticated users to execute arbitrary SQL commands via the (2) view, (3) mark, or (4) change parameter.

Affected Platforms (CPE)

📦
Elfden

Eshop Plugin

= 6.3.14

References & Advisories

相关漏洞威胁