nirweb Vulnerabilities and Affected Products
Vulnerabilities associated with nirweb_support.
Products
Clear product- nirweb_support1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2022-0781CRITICAL | Nirweb support < 2.8.2 - Unauthenticated SQLiThe Nirweb support WordPress plugin before 2.8.2 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action (available to unauthenticated users), leading to an SQL injection | CVSS9.8v3.1 | EPSS13.1% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |