Vulnerability Details CVE-2022-0867
The Pricing Table WordPress plugin before 3.6.1 fails to properly sanitize and escape user supplied POST data before it is being interpolated in an SQL statement and then executed via an AJAX action available to unauthenticated users
Exploit prediction scoring system (EPSS) score
EPSS Score 0.873
EPSS Ranking 99.4%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2022-0867
-
cpe:2.3:a:reputeinfosystems:pricing_table:*