Search This Blog

Powered by Blogger.

Blog Archive

Labels

About Me

WordPress Photoracer Plugin Vulnerable to XSS and SQL Injection

A Hacker known as "Pr0T3cT10n" found the multiple vulnerability in WordPress Photoracer Plugin. http://wordpress.org/extend/plugins/photoracer/ plugin is vulnerable to XSS(cross site Scripting) and SQLi(SQL Injection), Tested on Wordpress 3.2 Hebrew, Photoracer 1.0.


Source: http://pastebin.com/97BZqqGR

Update: looks like the plugin is removed from wordpress
Share it:

Hackers News

SQL Injection Vulnerability

Vulnerability

Web Application Vulnerability

WordPress hacks

XSS Vulnerability

No Related Post Found

Also Read

Undocumented ESP32 Commands Pose Security Risks, Researchers Warn

  The widely used ESP32 microchip, manufactured by Chinese company Espressif and embedded in over a billion devices