Lucene search

K
patchstackAnant ShrivastavaPATCHSTACK:9DC8CA07CC6ECB7D8D6AF48913CF64FC
HistoryAug 06, 2014 - 12:00 a.m.

WordPress Quartz Plugin <= 1.01.1 - SQL Injection

2014-08-0600:00:00
Anant Shrivastava
patchstack.com
4

0.001 Low

EPSS

Percentile

44.1%

Because of this vulnerability, remote authenticated users can execute arbitrary SQL commands in an edit action in the quartz/quote_form.php page to wp-admin/edit.php via the “quote” parameter.

Solution

           Update the plugin. 
CPENameOperatorVersion
quartzle1.01.1

0.001 Low

EPSS

Percentile

44.1%

Related for PATCHSTACK:9DC8CA07CC6ECB7D8D6AF48913CF64FC