cve/2015/CVE-2015-7670.md
2024-06-18 02:51:15 +02:00

681 B

CVE-2015-7670

Description

Multiple SQL injection vulnerabilities in includes/update.php in the Support Ticket System plugin before 1.2.1 for WordPress allow remote attackers to execute arbitrary SQL commands via the (1) user or (2) id parameter.

POC

Reference

Github

No PoCs found on GitHub currently.