Lucene search

K
patchstackN/APATCHSTACK:1C2C5450D4106E102D5E29ABFC133881
HistoryJan 02, 2015 - 12:00 a.m.

WordPress Cart66 Lite Plugin <= 1.5.3 - SQL Injection

2015-01-0200:00:00
N/A
patchstack.com
7

EPSS

0.001

Percentile

47.0%

This vulnerability allows authenticated users to execute arbitrary SQL commands via the “q” parameter in a promotionProductSearch action to wp-admin/admin-ajax.php.

Solution

           Update the plugin. 

EPSS

0.001

Percentile

47.0%

Related for PATCHSTACK:1C2C5450D4106E102D5E29ABFC133881