Security Advisory

CVE-2021-26935

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-18 14:06:55
Last updated 2024-08-03 20:33:41
Assigner mitre
State PUBLISHED

Description

In WoWonder < 3.1, remote attackers can gain access to the database by exploiting a requests.php?f=search-my-followers SQL Injection vulnerability via the event_id parameter.