Vulnerability Description
The WP Meta SEO WordPress plugin before 4.5.3 does not properly sanitize and escape inputs into SQL queries, leading to a blind SQL Injection vulnerability that can be exploited by subscriber+ users.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Joomunited | Wp Meta Seo | < 4.5.3 |
References
- https://wpscan.com/vulnerability/d44e9a45-cbdf-46b1-8b48-7d934b617534ExploitThird Party Advisory
- https://wpscan.com/vulnerability/d44e9a45-cbdf-46b1-8b48-7d934b617534ExploitThird Party Advisory
FAQ
What is CVE-2023-0875?
CVE-2023-0875 is a vulnerability with a CVSS score of 8.8 (HIGH). The WP Meta SEO WordPress plugin before 4.5.3 does not properly sanitize and escape inputs into SQL queries, leading to a blind SQL Injection vulnerability that can be exploited by subscriber+ users.
How severe is CVE-2023-0875?
CVE-2023-0875 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-0875?
Check the references section above for vendor advisories and patch information. Affected products include: Joomunited Wp Meta Seo.