First published: Thu Aug 22 2019(Updated: )
The limit-attempts plugin before 1.1.1 for WordPress has SQL injection during IP address handling.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bestwebsoft Limit Attempts Wordpress | <1.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability identified by CVE-2015-9335 is a SQL injection vulnerability in the limit-attempts plugin before 1.1.1 for WordPress during IP address handling.
The severity of CVE-2015-9335 is critical with a severity value of 9.8.
CVE-2015-9335 affects Bestwebsoft Limit Attempts plugin version up to exclusive 1.1.1.
To fix the CVE-2015-9335 vulnerability, update the limit-attempts plugin to version 1.1.1 or above.
You can find more information about the CVE-2015-9335 vulnerability on the official WordPress plugin page: https://wordpress.org/plugins/limit-attempts/#developers