Vigil@nce - WordPress Advanced CF7 DB: SQL injection

General News

Summary

This bulletin was written by Vigil@nce : https://vigilance.fr/offer/Computer... An attacker can use a SQL injection of WordPress Advanced CF7 DB, in order to read or alter data. However, user’s data are directly inserted in a SQL query. An attacker can therefore use a SQL injection of WordPress Advanced CF7 DB, in order to read or alter data.

Classifications

industries
Media and Publishing
applications
Web and Content Management

AskAI Classifications

Labels
Open Source Software Content Management Systems Web Development Platforms

Linked Companies

wordpress
$500M to $1B