cleantalk
Vulnerabilities and Security Researches

AdRotate Banner Manager – The only ad manager you'll need, CVE-2011-4671

CVE, Research URL

CVE-2011-4671

Published on
Dec 03, 2011
Research Description
SQL injection vulnerability in adrotate/adrotate-out.php in the AdRotate plugin 3.6.6, and other versions before 3.6.8, for WordPress allows remote attackers to execute arbitrary SQL commands via the track parameter (aka redirect URL).
Affected versions
max 3.6.8.
Status
vulnerable