Permalink
CVE-2023-49166
7.6 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): HIGH
- User interaction (UI): NONE
- Scope (S): CHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): NONE
- Availability impact (A): LOW
WordPress MSync Plugin <= 1.0.0 is vulnerable to SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Magic Logix MSync.This issue affects MSync: from n/a through 1.0.0.
References
Affected products
msync
- =<1.0.0
Package maintainers
-
@nicknovitski Nick Novitski <nixpkgs@nicknovitski.com>
-
@jluttine Jaakko Luttinen <jaakko.luttinen@iki.fi>
-
@qxrein qxrein <mnv07@proton.me>