The Quotes Collection WordPress plugin up to and including 2.5.2 does not validate and escape the bulkcheck parameter before using it in a SQL statement, leading to a SQL injection
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
quotes collection project quotes collection |