ID |
CVE-2025-23967
|
Sažetak |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpopal GG Bought Together for WooCommerce allows SQL Injection. This issue affects GG Bought Together for WooCommerce: from n/a through 1.0.2. |
Reference |
|
CVSS |
Base: | 9.3 |
Impact: | 4.7 |
Exploitability: | 3.9 |
|
Pristup |
Vektor | Složenost | Autentikacija |
NETWORK |
LOW |
NONE |
|
Impact |
Povjerljivost | Cjelovitost | Dostupnost |
HIGH |
NONE |
LOW |
|
CVSS vektor |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L |
Zadnje važnije ažuriranje |
27-06-2025 - 12:15 |
Objavljeno |
27-06-2025 - 12:15 |