Vulnerability CVE-2024-5975


Published: 2024-07-30

Description:
The CZ Loan Management WordPress plugin through 1.1 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

 References:
https://wpscan.com/vulnerability/68f81943-b007-49c8-be9c-d0405b2ba4cf/

Copyright 2026, cxsecurity.com

 

Back to Top