CVE-2022-0228
Popup Builder < 4.0.7 - Admin+ SQL Injection
Record summary
CVE-2022-0228 has a selected CVSS score of 7.2 (high); EIP currently links 1 Nuclei template.
Description
The Popup Builder WordPress plugin before 4.0.7 does not validate and properly escape the orderby and order parameters before using them in a SQL statement in the admin dashboard, which could allow high privilege users to perform SQL injection
Exploitation context
Available material
- Nuclei templates
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Popup Builder – Create highly converting, mobile friendly marketing popups. | CVE List | 4.0.7 to < 4.0.7 | affected |
Nuclei templates
1ProjectDiscoveryHIGHPopup Builder < 4.0.7 - SQL InjectionCVSS 7.2
The Popup Builder WordPress plugin before 4.0.7 does not validate and properly escape the orderby and order parameters before using them in a SQL statement in the admin dashboard, which could allow high privilege users to perform SQL injection.
Impact
Authenticated administrators with high privileges can exploit SQL injection to extract database contents, potentially exposing sensitive WordPress data and user credentials.
Remediation
update to v.4.0.7
Source: ProjectDiscovery