Arigato Autoresponder and Newsletter, CVE-2018-1002000
- CVE, Research URL
- Application
- Published on
- Dec 03, 2018
- Research Description
- There is blind SQL injection in WordPress Arigato Autoresponder and Newsletter v2.5.1.8 These vulnerabilities require administrative privileges to exploit. There is an exploitable blind SQL injection vulnerability via the del_ids variable by POST request.
- Affected versions
-
Min -, max 2.5.1.9.
- Status
-
vulnerable