First published: Wed Apr 17 2024(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Plugin.This issue affects JS Help Desk – Best Help Desk & Support Plugin: from n/a through 2.7.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
JS Help Desk by JoomSky | <=2.7.1 | |
WordPress JS Help Desk | <=2.7.1 |
Update to 2.7.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-47151 is classified as a critical severity vulnerability due to its potential for SQL injection.
To mitigate CVE-2022-47151, update the JS Help Desk plugin to a version greater than 2.7.1.
CVE-2022-47151 affects all versions of JS Help Desk from n/a through 2.7.1.
CVE-2022-47151 is an SQL injection vulnerability stemming from improper neutralization of special elements in SQL commands.
Yes, CVE-2022-47151 is an unauthenticated SQL injection vulnerability.