Record summary

CVE-2024-5975 has a selected CVSS score of 9.1 (critical); EIP currently links 1 Nuclei template.

Description

The CZ Loan Management WordPress plugin through 1.1 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableYes
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 31, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

CZ Loan Management

Default status: affected

CVE ListThrough 1.1affected

Default status: affected

CVE ListThrough 1.1affected

Nuclei templates

1
ProjectDiscoveryCRITICALCZ Loan Management <= 1.1 - SQL InjectionCVSS 9.1

The CZ Loan Management WordPress plugin through 1.1 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

Impact

Unauthenticated attackers can execute time-based SQL injection to extract sensitive database information including user credentials and loan management data.

Remediation

Update CZ Loan Management plugin to version 1.2 or later to address the SQL injection vulnerability.

Authorss4e-io
Template tagstime-based-sqlicvecve2024wpscanwp-pluginwordpresswpcz-loan-managementvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Source: ProjectDiscovery

References

2