The Hacker's Diet [the-hackers-diet] < 0.9.7b
unknown
[en] A vulnerability, which was classified as critical, has been found in The Hackers Diet Plugin up to 0.9.6b on WordPress. This issue affects some unknown processing of the file ajax_blurb.php of the component HTTP POST Request Handler. The manipulation of the argument user leads to sql injection. The attack may be i...
- Affected:
- up to 0.9.7b
- Fixed in:
- 0.9.7b
- Disclosed:
- Oct 29, 2023
CVE-2007-10003 on NVD →
The Hacker's Diet <= 0.9.6b - SQL Injection
critical
The The Hacker's Diet plugin for WordPress is vulnerable to SQL Injection via the 'user' parameter in all versions up to, and including, 0.9.6b due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for attackers to append additi...
- CVSS:
- 9.8
- Affected:
- up to 0.9.6b
- Fixed in:
- 0.9.7b
- Disclosed:
- Apr 30, 2007
CVE-2007-10003 on NVD →
Protect your WordPress site
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free
← Back to the vulnerability database