[WordPress GigPress Plugin](versions 2.3.28 and older) Vulnerability to SQL Injection
Importance (CVSS3.0)
★★★★★★★☆☆☆ 7.1 / 10 - High
Details
A SQL Injection vulnerability was discovered in WordPress GigPress Plugin.
This vulnerability allows malicious attackers to interact with the databases directly, potentially steal information and create new administrator accounts.
Solutions
There’s no patched version.
This plugin is unavailable from 2022/12/27.
Source
We provide information about critical vulnerabilities of WordPress for people who are using or are considering using Wordpress for their projects.
“[WordPress GigPress Plugin](versions 2.3.28 and older) Vulnerability to SQL Injection”, by WS Security is licensed under CC BY 4.0.
Comments