CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. It involves a SQL injection risk.
CVE
CVE-2021-24143
Severity
HIGH
CVSS
8.8
EPSS
1.26%
Original NVD Description
Unvalidated input in the AccessPress Social Icons plugin, versions before 1.8.1, did not sanitise its widget attribute, allowing accounts with post permission, such as author, to perform SQL injections.
Related CVEs
Other vulnerabilities affecting the same vendor(s)