PT-2023-10300 · WordPress · Wp-Donate

Published

2023-07-18

·

Updated

2024-05-17

·

CVE-2015-10122

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions wp-donate Plugin versions up to 1.4
Description A critical issue has been found in the wp-donate Plugin, affecting an unknown part of the file includes/donate-display.php. This issue leads to sql injection and can be initiated remotely.
Recommendations For wp-donate Plugin versions up to 1.4, upgrade to version 1.5 to address this issue.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2015-10122

Affected Products

Wp-Donate