CVE-2015-2213
EUVD-2015-232009.11.2015, 11:59
SQL injection vulnerability in the wp_untrash_post_comments function in wp-includes/post.php in WordPress before 4.2.4 allows remote attackers to execute arbitrary SQL commands via a comment that is mishandled after retrieval from the trash.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| wordpress | wordpress | 𝑥 ≤ 4.2.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References