Wow Countdowns <= 3.1.2 - Admin+ SQLi
CVE-2021-25064
7.2HIGH
What is CVE-2021-25064?
The Wow Countdowns WordPress plugin through 3.1.2 does not sanitize user input into the 'did' parameter and uses it in a SQL statement, leading to an authenticated SQL Injection.
Affected Version(s)
Wow Countdowns – easily create any countdowns, counters and timers 3.1.2