cleantalk
Vulnerabilities and Security Researches

Welcart e-Commerce, CVE-2015-7791

CVE, Research URL

CVE-2015-7791

Application

Welcart e-Commerce

Published on
Dec 30, 2015
Research Description
Multiple SQL injection vulnerabilities in admin.php in the Collne Welcart plugin before 1.5.3 for WordPress allow remote authenticated users to execute arbitrary SQL commands via the (1) search[column] or (2) switch parameter.
Affected versions
Min -, max 1.5.3.
Status
vulnerable