Vulnerability title WordPress plugin 'index. php' SQL Injection Vulnerability
Hazard level and high risk
Whether or not to publish for the first time
Release date: 1.01.08.25
Vulnerability cause input verification error
Vulnerability-caused threat unauthorized information modification
Affected Product Version
WordPress MM Duplicate 1.2
Vulnerability description
WordPress is a content management system developed in PHP. WordPress index. the php plug-in has the SQL injection vulnerability. Because user data is not fully filtered before being used for SQL queries, remote attackers can exploit this vulnerability to access or modify data, exploit potential vulnerabilities in the underlying database.
Refer to bugtraq id: 49272
Link:
Http://www.securityfocus.com/bid/49272/discuss
Verification Information
WordPress is a content management system developed in PHP. WordPress index. the php plug-in has the SQL injection vulnerability. Because user data is not fully filtered before being used for SQL queries, remote attackers can exploit this vulnerability to access or modify data, exploit potential vulnerabilities in the underlying database.
Verification Information contributor: Miroslav Stampar
Vulnerability Solution
None
No detailed solution available: http://wordpress.org/