WordPress Nest Theme 'codigo' Parameter SQL Injection Vulnerability
BID:56792
Info
WordPress Nest Theme 'codigo' Parameter SQL Injection Vulnerability
| Bugtraq ID: | 56792 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 04 2012 12:00AM |
| Updated: | Dec 04 2012 12:00AM |
| Credit: | Ashiyane Digital Security Team |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
WordPress Nest Theme 'codigo' Parameter SQL Injection Vulnerability
The Nest theme for WordPress is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
An attacker can exploit this issue to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
The Nest theme for WordPress is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
An attacker can exploit this issue to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
References
WordPress Nest Theme 'codigo' Parameter SQL Injection Vulnerability
References:
References:
- WordPress Homepage (WordPress)