CVE Database
/

CVE-2021-24847

Back to search

CVE-2021-24847

Published: Nov 17, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

The importFromRedirection AJAX action of the SEO Redirection Plugin – 301 Redirect Manager WordPress plugin before 8.2, available to any authenticated user, does not properly sanitise the offset parameter before using it in a SQL statement, leading an SQL injection when the redirection plugin is also installed

VendorProductVersions

Unknown

SEO Redirection Plugin – 301 Redirect Manager

affected
8.2 - < 8.2

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now