top of page

Posts

[WordPress GigPress Plugin](versions 2.3.28 and older) Vulnerability



[WordPress GigPress Plugin](versions 2.3.28 and older) Vulnerability to SQL Injection



Importance (CVSS3.0)

★★★★★★★☆☆☆ 7.1 / 10 - High


Details

A SQL Injection vulnerability was discovered in WordPress GigPress Plugin.


This vulnerability allows malicious attackers to interact with the databases directly, potentially steal information and create new administrator accounts.



Solutions

There’s no patched version.

This plugin is unavailable from 2022/12/27.



Source

CVE-2023-0381


Vulnerability details




We provide information about critical vulnerabilities of WordPress for people who are using or are considering using Wordpress for their projects.


[WordPress GigPress Plugin](versions 2.3.28 and older) Vulnerability to SQL Injection”, by WS Security is licensed under CC BY 4.0.



1 view
bottom of page