CVEs Blog | G5 Cyber Security

CVE-2015-2213 – SQL injection vulnerability in the wp_untrash_post_comments function in w

SQL injection vulnerability in the wp_untrash_post_comments function in wp-includes/post.php in WordPress before 4.2.4 allows remote attackers to execute arbitrary SQL commands via a comment that is mishandled after retrieval from the trash.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2213

Reference (s):

Exit mobile version