Security Advisory

CVE-2025-2248

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-05-15 20:07:27
Last updated 2025-05-16 20:22:26
Assigner WPScan
CVSS score not scored
State PUBLISHED

Description

The WP-PManager WordPress plugin through 1.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks