CVE-2020-5766
40Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 7.2%
from disclosure to weapon
Published on NVDJul 13
VulnCheck+273d
exploitation probability
7.2%top 6% of all CVEs
observed exploitation
yesVulnCheck
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in SRS Simple Hits Counter Plugin for WordPress 1.0.3 and 1.0.4 allows a remote, unauthenticated attacker to determine the value of database fields.
Affected products
n/a · SRS Simple Hits Counter Plugin for WordPress