A vulnerability, which was classified as critical, has been found in Dynamic Widgets Plugin up to 1.5.10 on WordPress. This issue affects some unknown processing of the file classes/dynwid_class.php. The manipulation leads to sql injection. The attack may be initiated remotely. Upgrading to version 1.5.11 is able to address this issue. The identifier of the patch is d0a19c6efcdc86d7093b369bc9e29a0629e57795. It is recommended to upgrade the affected component. The identifier VDB-225353 was assigned to this vulnerability.
Metrics
Affected Vendors & Products
References
History
Wed, 27 Nov 2024 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Vivwebsolutions
Vivwebsolutions dynamic Widgets |
|
CPEs | cpe:2.3:a:vivwebsolutions:dynamic_widgets:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Qurl
Qurl dynamic Widgets |
Vivwebsolutions
Vivwebsolutions dynamic Widgets |

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-06T08:58:26.446Z
Reserved: 2023-04-08T12:45:47.285Z
Link: CVE-2015-10100

No data.

Status : Modified
Published: 2023-04-10T18:15:07.873
Modified: 2024-11-27T20:19:36.870
Link: CVE-2015-10100

No data.