Record summary

CVE-2024-3217 has a selected CVSS score of 8.8 (high); EIP currently links 1 repository PoC.

Description

The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'attribute_value' and 'attribute_id' parameters in all versions up to, and including, 1.3.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with subscriber-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

Description source: CVE List

Exploitation context

Available material

Repository PoCs
1

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated May 29, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

Default status: unaffected

CVE ListThrough 1.3.0affected

Default status: unaffected

CVE ListThrough 1.3.0affected

Proofs of concept

1

Repository PoCs

GitHubBassamAssiri/CVE-2024-3217-POCRepository PoCby BassamAssiriStars: 6Not analyzed1 file

9.5 KiB

GitHub

PoC details

References

4