cleantalk
Vulnerabilities and Security Researches

SMTP Mail, fc50cf1a-00ae-4634-9b96-cbb6ced4651a

Application

SMTP Mail

Published on
-
Research Description
SMTP Mail [smtp-mail] < 1.2.2 (closed) SMTP Mail &lt; 1.2.2 - Authenticated SQL Injections The plugin does not properly validate or escape the order and orderby parameters before using them in SQL statements, leading to SQL Injections in the admin dashboard
Affected versions
max 1.2.2.
Status
vulnerable