CVE-2024-3552

CRITICAL NUCLEI LAB

Web Directory Free WP <1.7.0 - SQL Injection

Title source: llm

Description

The Web Directory Free WordPress plugin before 1.7.0 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection with different techniques like UNION, Time-Based and Error-Based.

Exploits (2)

nomisec WORKING POC
by KiPhuong · poc
https://github.com/KiPhuong/challenge-cve-2024-3552
nomisec WRITEUP
by KiPhuong · poc
https://github.com/KiPhuong/cve-2024-3552

Nuclei Templates (1)

Web Directory Free < 1.7.0 - SQL Injection
CRITICALVERIFIEDby s4e-io

Scores

CVSS v3 9.8
EPSS 0.9335
EPSS Percentile 99.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-89
Status published
Products (1)
salephpscripts/web_directory_free < 1.7.0
Published Jun 13, 2024
Tracked Since Feb 18, 2026