Multiple SQL injection vulnerabilities in includes/update.php in the Support Ticket System plugin prior to 1.2.1 for WordPress allow remote malicious users to execute arbitrary SQL commands via the (1) user or (2) id parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
support ticket system project support ticket system |