CVE-2013-6243 Information

Description

SQL injection vulnerability in the Landing Pages plugin 1.2.3 before 20131009 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the \post\ parameter to index.php.

Reference

http://osvdb.org/98334 http://plugins.trac.wordpress.org/changeset?reponame=&old=78553540landing-pages&new=78553540landing-pages http://secunia.com/advisories/55192 http://wordpress.org/plugins/landing-pages/changelog http://www.securityfocus.com/bid/62942 https://exchange.xforce.ibmcloud.com/vulnerabilities/87803

Share on: