CVE-2024-55978
CRITICALWalletStation.com Code Generator Pro - SQL Injection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-55978. PoCs published by RandomRobbieBF.
AI-analyzed exploit summary This repository contains a proof-of-concept for CVE-2024-55978, an unauthenticated SQL injection vulnerability in the Code Generator Pro WordPress plugin. The PoC uses sqlmap to demonstrate the exploitation of insufficient input escaping in the plugin's parameters.
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WalletStation Code Generator Pro code-generator-pro allows SQL Injection.This issue affects Code Generator Pro: from n/a through <= 1.2.
Exploits (1)
This repository contains a proof-of-concept for CVE-2024-55978, an unauthenticated SQL injection vulnerability in the Code Generator Pro WordPress plugin. The PoC uses sqlmap to demonstrate the exploitation of insufficient input escaping in the plugin's parameters.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L