CVE-2012-1067: SQL Injection
Published Feb 14, 2012
·Updated
SQL injection vulnerability in the WP-RecentComments plugin 2.0.7 for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter in an rc-content action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected Software
2 affected components
Mg12 Wp-recentcomments=2.0.7
WordPress WordPress
Event History
Feb 14, 2012
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description