# CVE-2022-0739-Exploitation
An exploitation of CVE-2022-0739.
It about BookingPress WordPress plugin before 1.0.11.
By using bookingpress_front_get_category_services AJAX action (available to unauthenticated users), leading to an unauthenticated SQL Injection.
Since the plugin fails to properly sanitize user supplied POST data before it is used in a dynamically constructed SQL query.
[4.0K] /data/pocs/6eae4748269e45b7bd3cd0801fd925e4ef0371d3
├── [1.2M] CVE_Report.pdf
└── [ 398] README.md
1 directory, 2 files