HomeDefault status
unaffected
Any version before 1.1.23
affected
Description
The OttoKit: All-in-One Automation Platform WordPress plugin before 1.1.23 does not properly sanitize user input before using it in a SQL statement, which could allow unauthenticated attackers to perform SQL injection attacks.
Problem types
Product status
Any version before 1.1.23
Credits
mcdruid
WPScan
References
wpscan.com/...rability/54bc1bf4-1033-49e2-aff9-a14c834c35bd/