Record summary

CVE-2024-5765 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.

Description

The WpStickyBar WordPress plugin through 2.1.0 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableYes
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 30, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

WpStickyBar

Default status: affected

CVE ListThrough 2.1.0affected

Default status: unknown

CVE ListThrough 2.1.0affected

Nuclei templates

1
ProjectDiscoveryHIGHWpStickyBar <= 2.1.0 - SQL Injection

The plugin does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

Impact

Unauthenticated attackers can execute time-based SQL injection attacks to extract sensitive database information including user credentials and configuration data.

Remediation

Update WpStickyBar plugin to version 2.1.1 or later to address the SQL injection vulnerability.

WeaknessesCWE-89
Authorstheamanrawat
Template tagstime-based-sqlicvecve2024sqliwpscanwordpresswp-pluginwpwpstickybarunauthvuln
FOFA: body="/plugins/wpstickybar-sticky-bar-sticky-header"

Source: ProjectDiscovery

References

2