Description
WordPress is prone to an SQL injection vulnerability because it fails to properly sanitize user-supplied input before using it in an SQL query. A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation. WordPress version 0.7 is vulnerable; other versions may also be affected.
Remediation
Update to WordPress version 0.71 or latest
References
Related Vulnerabilities
WordPress Plugin Event Calendar WD-Responsive Event Calendar Cross-Site Scripting (1.1.44)
Python Improper Input Validation Vulnerability (CVE-2023-27043)
WordPress Plugin Watu Quiz Cross-Site Scripting (3.3.9.2)
MySQL CVE-2016-0665 Vulnerability (CVE-2016-0665)
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-1950)