AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-39351

MEDIUM · CVSS 6.5 EPSS 1.13%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-10-06 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-39351
Severity
MEDIUM
CVSS
6.5
EPSS
1.13%
WordPress

Original NVD Description

The WP Bannerize WordPress plugin is vulnerable to authenticated SQL injection via the id parameter found in the ~/Classes/wpBannerizeAdmin.php file which allows attackers to exfiltrate sensitive information from vulnerable sites. This issue affects versions 2.0.0 - 4.0.2.