added verified tag

This commit is contained in:
Dhiyaneshwaran
2023-02-20 15:26:40 +05:30
committed by GitHub
parent 00f2db8e5b
commit bc7eb48cb4

View File

@@ -5,13 +5,13 @@ info:
author: dwisiswant0
severity: critical
description: |
The Paid Memberships Pro WordPress Plugin, version < 2.9.8, is affected
by an unauthenticated SQL injection vulnerability in the 'code' parameter
of the '/pmpro/v1/order' REST route.
The Paid Memberships Pro WordPress Plugin, version < 2.9.8, is affected by an unauthenticated SQL injection vulnerability in the 'code' parameter of the '/pmpro/v1/order' REST route.
reference:
- https://www.tenable.com/security/research/tra-2023-2
- https://wordpress.org/plugins/paid-memberships-pro/
- https://nvd.nist.gov/vuln/detail/CVE-2023-23488
metadata:
verified: "true"
tags: wp-plugin,wp,sqli,paid-memberships-pro,cve,cve2023,wordpress
requests: