The SupportCandy WordPress plugin before 3.1.7 does not properly sanitise and escape the agents[] parameter in the set_add_agent_leaves AJAX function before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.
We have discovered 370 live websites that are affected by CVE-2023-2805.
| Product | |
| Category | Wordpress Plugins |
| Vulnerable Domains | 370 live websites (18% of Supportcandy install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 26 versions ( 50% of all versions) |
| 86 websites | |
| 41 websites | |
| 29 websites | |
| 24 websites | |
| 20 websites | |
| 18 websites | |
| 16 websites | |
| 16 websites | |
| 11 websites | |
| 9 websites |
| .com | 135 websites |
| .it | 31 websites |
| .ru | 18 websites |
| .com.br | 17 websites |
| .net | 11 websites |
| .org | 10 websites |
| .de | 8 websites |
| .pl | 6 websites |
| .com.au | 5 websites |
| .eu | 5 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****.app | **,*** | ||
| ****************.com | **,*** | ||
| ********.pt | **,*** | ||
| *****.sv | ***,*** | ||
| *****************.com | ***,*** | ||
| ***********.com | ***,*** | ||
| *********.com | ***,*** | ||
| *********.de | ***,*** | ||
| ************.***.au | ***,*** | ||
| ************.com | ***,*** |
FAQ