Description
The "order_col" parameter in archive.php of SEO Panel 4.8.0 is vulnerable to time-based blind SQL injection, which leads to the ability to retrieve all databases.
Remediation
References
Related Vulnerabilities
MediaWiki Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2022-47927)
WordPress Plugin Conversador Cross-Site Scripting (2.61)
WordPress User-Agent SQL Injection Vulnerability (1.5.2)
XWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2023-37277)
WordPress Plugin WordPress Landing Pages Unspecified Vulnerability (2.2.6)