CVE-2016-20073
HIGHAnswer My Question 1.3 Plugin WordPress SQL Injection via modal.php
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2016-20073. PoCs published by Lenon Leite.
AI-analyzed exploit summary The exploit demonstrates a SQL injection vulnerability in the 'Answer My Question' WordPress plugin (v1.3) via an unescaped $_POST['id'] parameter. The PoC includes a form that submits a malicious SQL query to extract data from the wp_terms table.
Description
Answer My Question 1.3 plugin for WordPress contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'id' POST parameter. Attackers can submit crafted SQL statements to the modal.php endpoint to extract sensitive database information including WordPress terms and configuration data.
Exploits (1)
The exploit demonstrates a SQL injection vulnerability in the 'Answer My Question' WordPress plugin (v1.3) via an unescaped $_POST['id'] parameter. The PoC includes a form that submits a malicious SQL query to extract data from the wp_terms table.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N