cleantalk
Vulnerabilities and Security Researches

Arigato Autoresponder and Newsletter, CVE-2018-1002000

CVE, Research URL

CVE-2018-1002000

Published on
Dec 03, 2018
Research Description
There is blind SQL injection in WordPress Arigato Autoresponder and Newsletter v2.5.1.8 These vulnerabilities require administrative privileges to exploit. There is an exploitable blind SQL injection vulnerability via the del_ids variable by POST request.
Affected versions
Min -, max 2.5.1.9.
Status
vulnerable