Description

The 'Project Manager' WordPress Plugin is affected by an authenticated SQL injection vulnerability in the 'orderby' parameter in the '/pm/v2/activites' route.

INFO

Published Date :

2024-12-02T13:23:50.027Z

Last Modified :

2024-12-02T19:18:41.867Z

Source :

tenable
AFFECTED PRODUCTS

The following products are affected by CVE-2024-12015 vulnerability.

Vendors Products
Wedevs
  • Wp Project Manager
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-12015.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact