Vulnerability Details CVE-2022-2559
The Fluent Support WordPress plugin before 1.5.8 does not properly sanitise, validate and escape various parameters before using them in an SQL statement, leading to an SQL Injection vulnerability exploitable by high privilege users
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.5%
CVSS Severity
CVSS v3 Score 7.2
Products affected by CVE-2022-2559
-
cpe:2.3:a:wpmanageninja:fluent_support:-
-
cpe:2.3:a:wpmanageninja:fluent_support:1.4.0
-
cpe:2.3:a:wpmanageninja:fluent_support:1.4.1
-
cpe:2.3:a:wpmanageninja:fluent_support:1.4.2
-
cpe:2.3:a:wpmanageninja:fluent_support:1.4.6
-
cpe:2.3:a:wpmanageninja:fluent_support:1.5.0
-
cpe:2.3:a:wpmanageninja:fluent_support:1.5.1
-
cpe:2.3:a:wpmanageninja:fluent_support:1.5.2
-
cpe:2.3:a:wpmanageninja:fluent_support:1.5.3
-
cpe:2.3:a:wpmanageninja:fluent_support:1.5.4
-
cpe:2.3:a:wpmanageninja:fluent_support:1.5.5
-
cpe:2.3:a:wpmanageninja:fluent_support:1.5.6
-
cpe:2.3:a:wpmanageninja:fluent_support:1.5.7