Filtered by vendor Moosocial Subscriptions
Filtered by product Moosocial Store Plugin Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2018-25371 1 Moosocial 2 Moosocial, Moosocial Store Plugin 2026-05-26 8.2 High
mooSocial Store Plugin 2.6 contains a blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries through the product parameter in URL rewrite functionality. Attackers can inject SQL code using boolean-based blind, time-based blind, or stacked query techniques in the product URI parameter to extract sensitive database information.