PT-2023-14509 · Unknown · Richplugins Plugin For Google Reviews

Rafie Muhammad

·

Published

2023-03-15

·

Updated

2023-03-17

·

CVE-2022-44580

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:L
Name of the Vulnerable Software and Affected Versions RichPlugins Plugin for Google Reviews plugin versions <= 2.2.3
Description The issue is related to a SQL Injection (SQLi) vulnerability. This vulnerability allows an attacker to inject malicious SQL code, potentially leading to unauthorized access or modification of sensitive data.
Recommendations For versions <= 2.2.3, update to a version higher than 2.2.3 to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2022-44580

Affected Products

Richplugins Plugin For Google Reviews