High severity7.5NVD Advisory· Published Jul 13, 2020· Updated Jun 17, 2026
CVE-2020-5766
CVE-2020-5766
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in SRS Simple Hits Counter Plugin for WordPress 1.0.3 and 1.0.4 allows a remote, unauthenticated attacker to determine the value of database fields.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:srs_simple_hits_counter_project:srs_simple_hits_counter:1.0.3:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:srs_simple_hits_counter_project:srs_simple_hits_counter:1.0.3:*:*:*:*:wordpress:*:*
- cpe:2.3:a:srs_simple_hits_counter_project:srs_simple_hits_counter:1.0.4:*:*:*:*:wordpress:*:*
- WordPress/Simple Hits Counter Plugindescription
- Range: 1.0.3, 1.0.4
Patches
Vulnerability mechanics
References
1- www.tenable.com/security/research/tra-2020-42nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.