CVE-2023-52215: WordPress Barcode Scanner with Inventory & Order Manager Plugin <=1.5.1 is vulnerable to SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in UkrSolution Simple Inventory Management – just scan barcode to manage products and orders. For WooCommerce.This issue affects Simple Inventory Management – just scan barcode to manage products and orders. For WooCommerce: from n/a through 1.5.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-52215?
CVE-2023-52215 is classified as a medium severity SQL Injection vulnerability.
How do I fix CVE-2023-52215?
To fix CVE-2023-52215, update the UkrSolution Barcode Scanner and Inventory Manager plugin to version 1.5.2 or later.
What are the potential impacts of CVE-2023-52215?
Exploitation of CVE-2023-52215 can allow unauthorized users to execute arbitrary SQL commands on the database.
Who is affected by CVE-2023-52215?
CVE-2023-52215 affects users of the UkrSolution Simple Inventory Management plugin version 1.5.1 and earlier.
Is CVE-2023-52215 easily exploitable?
Yes, CVE-2023-52215 can be exploited without authentication, making it particularly dangerous for vulnerable installations.