CVE-2021-24849 Scanner
Detects 'SQL Injection (SQLi)' vulnerability in WCFM WooCommerce Multivendor Marketplace plugin for WordPress affects v. before 3.4.12.
Used 2.6k times · 5.9k assets checked · domain, ipv4, subdomain
The wcfm_ajax_controller AJAX action of the WCFM Marketplace WordPress plugin before 3.4.12, available to unauthenticated and authenticated user, does not properly sanitise multiple parameters before using them in SQL statements, leading to SQL injections
Detects 'SQL Injection (SQLi)' vulnerability in WCFM WooCommerce Multivendor Marketplace plugin for WordPress affects v. before 3.4.12.
Used 2.6k times · 5.9k assets checked · domain, ipv4, subdomain
S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.
Create a free account →