Skip to content

Known CVE

Documentor <= 1.5.3 - Unauthenticated SQL Injection

The Documentor WordPress plugin through 1.5.3 fails to sanitize and escape user input before it is being interpolated in an SQL statement and then executed, leading to an SQL Injection exploitable by unauthenticated users.

CVE-2022-0773

Critical2022CVSS 9.8CWE-89

time-based-sqli · cve2022 · unauth · sqli · wp-plugin · wp · documentor-lite · wpscan

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website