Server Status by Hostname/IP <= 4.6 - SQL Injection
highA SQL injection vulnerability in the Xpert Solution "Server Status by Hostname/IP" plugin 4.6 for WordPress allows an authenticated user to execute arbitrary SQL commands via GET parameters.
- CVSS:
- 8.8
- Affected:
- up to 4.6
- Fixed in:
- 5.0
- Disclosed:
- Jul 1, 2019