Fiche vulnérabilité
CVE-2023-48764 : faille élevée GuardGiant Brute Force Protection… (CVSS 7.6)
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in GuardGiant Brute Force Protection WordPress Brute Force Protection – Stop Brute Force Attacks.This issue affects WordPress Brute Force Protection – Stop Brute Force Attacks: from n/a through 2.2.5.
En bref
- Sévérité
- Élevée (CVSS 7.6)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
- Exploitation active
- Non signalée par la CISA
- Publication
- 19 déc. 2023
- Dernière mise à jour
- 28 avr. 2026
Produits concernés
- GuardGiant Brute Force Protection WordPress Brute Force Protection – Stop Brute Force Attacks
Correctif et mesures
Update to 2.2.6 or a higher version.