CVE-2023-28659 | Waiting One-click Countdowns Plugin up to 0.6.2 on WordPress pbc_save_downs pbc_down[meta][id] sql injection (EUVD-2023-32320)
A vulnerability described as critical has been identified in Waiting One-click Countdowns Plugin up to 0.6.2 on WordPress. Affected by this issue is the function pbc_save_downs. The manipulation of the argument pbc_down[meta][id] results in sql injection.
This vulnerability is known as CVE-2023-28659. It is possible to launch the attack remotely. No exploit is available.