Fiche vulnérabilité
CVE-2024-54280 : faille critique iqonic wpbookit (CVSS 9.8)
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Iqonic Design WPBookit wpbookit allows SQL Injection.This issue affects WPBookit: from n/a through <= 1.6.0.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 16 déc. 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- iqonic wpbookit