WordPress · Wordpress Classifieds Plugin · CVE-2014-10013
**Name of the Vulnerable Software and Affected Versions**
Another WordPress Classifieds Plugin (affected versions not specified)
**Description**
The issue allows remote attackers to execute arbitrary SQL commands via the `keywordphrase` parameter in a "dosearch" action. This enables attackers to manipulate database queries, potentially leading to unauthorized data access or modification.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.