IndiaNIC Testimonial 2.2 - testimonial.php custom_query Parameter SQL Injection

Affects Plugin

fixed in version 2.3

References

CVE 2013-5673
EXPLOITDB 28054
PACKETSTORM 123036
URL https://seclists.org/fulldisclosure/2013/Sep/5

Classification

Type SQLI
OWASP Top 10 A1: Injection
CWE CWE-89

Miscellaneous

Views 4150
Verified No
WPVDB ID 6876

Timeline

Publicly Published 2014-08-01 (over 5 years ago)
Added 2014-08-01 (over 5 years ago)
Last Updated 2019-10-21 (6 months ago)

Our Other Services

Online WordPress Vulnerability Scanner WPScan WordPress Security Plugin