CVE-2021-24791
Header Footer Code Manager < 1.1.14 - Admin+ SQL Injections
Record summary
CVE-2021-24791 has a selected CVSS score of 7.2 (high); EIP currently links 1 Nuclei template.
Description
The Header Footer Code Manager WordPress plugin before 1.1.14 does not validate and escape the "orderby" and "order" request parameters before using them in a SQL statement when viewing the Snippets admin dashboard, leading to SQL injections
Exploitation context
Available material
- Nuclei templates
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Header Footer Code Manager | CVE List | 1.1.14 to < 1.1.14 | affected |
Nuclei templates
1ProjectDiscoveryHIGHHeader Footer Code Manager < 1.1.14 - Admin+ SQL InjectionCVSS 7.2
The Header Footer Code Manager WordPress plugin before 1.1.14 does not validate and escape the "orderby" and "order" request parameters before using them in a SQL statement when viewing the Snippets admin dashboard, leading to SQL injections
Impact
Authenticated administrators can exploit time-based blind SQL injection in the Snippets dashboard, potentially extracting sensitive database contents including user credentials.
Remediation
Fixed in version 1.1.14
Source: ProjectDiscovery