7.5
CVSSv2

CVE-2013-5917

Published: 23/09/2013 Updated: 23/09/2013
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in wp-comments-post.php in the NOSpam PTI plugin 2.1 for WordPress allows remote malicious users to execute arbitrary SQL commands via the comment_post_ID parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

rodrigo_coimbra nospam_pti 2.1

Exploits

[ NOSpamPTI Wordpress plugin Blind SQL Injection ] [ Vendor product description ] NOSpamPTI eliminates the spam in your comment box so strong and free, developed from the idea of Nando Vieira <a href="bitly/d38gB8" rel="nofollow">bitly/d38gB8</a>, but some themes do not support changes to the functionsphp to this we a ...
WordPress NOSpamPTI plugin version 21 suffers from a remote blind SQL injection vulnerability ...