plugin

Wp Bannerize Vulnerabilities

1 known security issue reported for the Wp Bannerize WordPress plugin. Most recent disclosed Oct 5, 2021.

1 medium

Running Wp Bannerize on your site? Check whether your installed version is affected.

Scan your site free

WP Bannerize 2.0.0 - 4.0.2 - Authenticated SQL Injection via id Parameter

medium

The WP Bannerize WordPress plugin is vulnerable to authenticated SQL injection via the id parameter found in the ~/Classes/wpBannerizeAdmin.php file which allows attackers to exfiltrate sensitive information from vulnerable sites. This issue affects versions 2.0.0 - 4.0.2.

CVSS:
6.5
Affected:
2.0.0 – 4.0.2
Fix:
No patched version reported
Disclosed:
Oct 5, 2021

CVE-2021-39351 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database