presspage Vulnerabilities and Affected Products
Vulnerabilities associated with bestbooks.
Products
Clear product- bestbooks1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2022-0827CRITICAL | Bestbooks <= 2.6.3 - Unauthenticated SQLiThe Bestbooks WordPress plugin through 2.6.3 does not sanitise and escape some parameters before using them in a SQL statement via an AJAX action, leading to an SQL Injection exploitable by unauthenticated users | CVSS9.8v3.1 | EPSS9.24% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |