The BSK PDF Manager WordPress plugin prior to 3.1.2 does not validate and escape the orderby and order parameters before using them in a SQL statement, leading to a SQL injection issue
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
bannersky bsk pdf manager |