Description
SQL injection vulnerability in xmlrpc.php in WordPress 2.2 allows remote authenticated users to execute arbitrary SQL commands via a parameter value in an XML RPC wp.suggestCategories methodCall, a different vector than CVE-2007-1897.
Remediation
References
Related Vulnerabilities
Contao Improper Encoding or Escaping of Output Vulnerability (CVE-2019-19714)
Squid Improper Input Validation Vulnerability (CVE-2021-33620)
WordPress Plugin Properties and Agents-Real Estate Manager Cross-Site Scripting (6.7.1)
WordPress Plugin Wallable-Social Networking Arbitrary File Upload (1.1)
WordPress Plugin SPNbabble Cross-Site Request Forgery (1.4.1)