AdServe < 0.3 - SQL Injection
criticalSQL injection vulnerability in adclick.php in the AdServe 0.2 plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter.
- CVSS:
- 9.8
- Affected:
- up to 0.2
- Fixed in:
- 0.3
- Disclosed:
- Jan 30, 2008