cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2022-4352,https://securityvulnerability.io/vulnerability/CVE-2022-4352,Qe SEO Handyman <= 1.0 - Admin+ SQLi,"The Qe SEO Handyman WordPress plugin version 1.0 is vulnerable to SQL injection due to insufficient sanitization and escaping of parameters before executing SQL statements. This vulnerability can be exploited by high privilege users, such as administrators, potentially leading to unauthorized access to sensitive database information. Proper security measures should be implemented to mitigate this risk.",Wordpress,Qe Seo Handyman,7.2,HIGH,0.0014299999456852674,false,,false,false,false,,false,false,2023-01-02T21:49:35.146Z,0 CVE-2022-4351,https://securityvulnerability.io/vulnerability/CVE-2022-4351,Qe SEO Handyman <= 1.0 - Admin+ SQLi,"The Qe SEO Handyman WordPress plugin versions up to 1.0 contains a flaw that fails to properly sanitize and escape user input before using it in SQL queries. This vulnerability allows high privilege users, such as administrators, to execute arbitrary SQL commands on the database through crafted input. As a result, malicious users can manipulate database queries, potentially leading to data breaches or unauthorized access to sensitive information.",Wordpress,Qe Seo Handyman,7.2,HIGH,0.0014299999456852674,false,,false,false,false,,false,false,2023-01-02T21:49:07.611Z,0