Critical severity9.8NVD Advisory· Published Sep 14, 2017· Updated May 13, 2026
CVE-2017-1002018
CVE-2017-1002018
Description
Vulnerability in wordpress plugin eventr v1.02.2, The edit.php form and attendees.php code do not sanitize input, this allows for blind SQL injection via the event parameter.
Affected products
2- cpe:2.3:a:eventr_project:eventr:1.02.2:*:*:*:*:wordpress:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.vapidlabs.com/advisory.phpnvdExploitThird Party Advisory
- wordpress.org/plugins/eventr/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.