CVE-2022-1950
Youzify < 1.2.0 - Unauthenticated SQLi
Record summary
CVE-2022-1950 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.
Description
The Youzify WordPress plugin before 1.2.0 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Dec 23, 2023 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Nuclei templates
- 1
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress | CVE List | 1.2.0 to < 1.2.0 | affected |
youzifyBrowse kainelabs / youzify | VulnCheck | Version data not supplied | |
Nuclei templates
1ProjectDiscoveryCRITICALYouzify < 1.2.0 - Unauthenticated SQLiCVSS 9.8
The Youzify WordPress plugin before 1.2.0 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection
Impact
Unauthenticated attackers can execute time-based blind SQL injection via AJAX actions to extract database contents, potentially exposing all Youzify media and user data.
Remediation
Fixed in 1.2.0
Source: ProjectDiscovery