plugin

Eventr Vulnerabilities

4 known security issues reported for the Eventr WordPress plugin. Most recent disclosed Sep 14, 2017.

2 critical

Running Eventr on your site? Check whether your installed version is affected.

Scan your site free

Eventr [eventr] <= 1.02.2 (closed)

unknown

[en] Vulnerability in wordpress plugin eventr v1.02.2, The edit.php form and event_form.php code do not sanitize input, this allows for blind SQL injection via the event parameter.

Affected:
up to 1.02.2
Fixed in:
1.02.2
Disclosed:
Sep 14, 2017

CVE-2017-1002019 on NVD →

Eventr [eventr] <= 1.02.2 (closed)

unknown

[en] Vulnerability in wordpress plugin eventr v1.02.2, The edit.php form and attendees.php code do not sanitize input, this allows for blind SQL injection via the event parameter.

Affected:
up to 1.02.2
Fixed in:
1.02.2
Disclosed:
Sep 14, 2017

CVE-2017-1002018 on NVD →

eventr <= 1.02.2 - SQL Injection

critical

Vulnerability in wordpress plugin eventr v1.02.2, The edit.php form and attendees.php code do not sanitize input, this allows for blind SQL injection via the event parameter.

CVSS:
9.8
Affected:
up to 1.02.2
Fix:
No patched version reported
Disclosed:
May 31, 2017

CVE-2017-1002018 on NVD →

Eventr <= 1.02.2 - SQL Injection

critical

Vulnerability in wordpress plugin eventr v1.02.2, The edit.php form and event_form.php code do not sanitize input, this allows for blind SQL injection via the event parameter.

CVSS:
9.8
Affected:
up to 1.02.2
Fix:
No patched version reported
Disclosed:
May 30, 2017

CVE-2017-1002019 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database