VYPR

Watupro

by Calendarscripts

CVEs (1)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-9834Cri0.689.80.12Sep 7, 2017SQL injection vulnerability in the WatuPRO plugin before 5.5.3.7 for WordPress allows remote attackers to execute arbitrary SQL commands via the watupro_questions parameter in a watupro_submit action to wp-admin/admin-ajax.php.