CVE-2022-3395
WP All Export Pro < 1.7.9 - Authenticated SQLi
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The WP All Export Pro WordPress plugin before 1.7.9 uses the contents of the cc_sql POST parameter directly as a database query, allowing users which has been given permission to run exports to execute arbitrary SQL statements, leading to a SQL Injection vulnerability. By default only users with the Administrator role can perform exports, but this can be delegated to lower privileged users as well.
El plugin WP All Export Pro de WordPress versiones anteriores a 1.7.9, usa el contenido del parámetro POST cc_sql directamente como una consulta a la base de datos, permitiendo a usuarios con permiso para ejecutar exportaciones ejecutar sentencias SQL arbitrarias, conllevando a una vulnerabilidad de inyección SQL. Por defecto, sólo los usuarios con el rol de Administrador pueden llevar a cabo exportaciones, pero esto puede ser delegado a usuarios con menos privilegios también
The WP ALL Export Pro plugin for WordPress is vulnerable to SQL Injection via the cc_sql parameter in versions up to, and including, 1.7.8. This allows low-level attackers (depending on whether they have been given permission to perform SQL queries) to to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. While the plugin defaults to allow only administrators to perform such queries, they can also delegate this task to lower-privileged users.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-10-03 CVE Reserved
- 2022-10-03 CVE Published
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://wpscan.com/vulnerability/10742154-368a-40be-a67d-80ea848493a0 | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Soflyy Search vendor "Soflyy" | Wp All Export Search vendor "Soflyy" for product "Wp All Export" | < 1.7.9 Search vendor "Soflyy" for product "Wp All Export" and version " < 1.7.9" | pro, wordpress |
Affected
|