2 results (0.002 seconds)

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

22 Feb 2023 — Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Paytm Paytm Payment Gateway paytm-payments allows SQL Injection.This issue affects Paytm Payment Gateway: from n/a through 2.7.3. Neutralización inadecuada de elementos especiales utilizados en una vulnerabilidad de comando SQL ("Inyección SQL") en Paytm Paytm Payment Gateway paytm-paids permite la inyección SQL. Este problema afecta a Paytm Payment Gateway: desde n/a hasta 2.7.3. The Paytm Payment Gateway ... • https://patchstack.com/database/vulnerability/paytm-payments/wordpress-paytm-payment-gateway-plugin-2-7-3-auth-sql-injection-sqli-vulnerability?_s_id=cve • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 7.2EPSS: 0%CPEs: 1EXPL: 0

29 Nov 2022 — Server-Side Request Forgery (SSRF) vulnerability in Paytm Paytm Payment Gateway.This issue affects Paytm Payment Gateway: from n/a through 2.7.0. Vulnerabilidad de Server-Side Request Forgery (SSRF) en Paytm Paytm Payment Gateway. Este problema afecta a Paytm Payment Gateway: desde n/a hasta 2.7.0. The Paytm Payment Gateway plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 2.7.0. This is due to Server-Side Request Forgery. • https://patchstack.com/database/vulnerability/paytm-payments/wordpress-paytm-payment-gateway-plugin-2-7-0-server-side-request-forgery-ssrf-vulnerability?_s_id=cve • CWE-918: Server-Side Request Forgery (SSRF) •