CVE-2016-10888: SQL Injection
Published Aug 14, 2019
·Updated
The all-in-one-wp-security-and-firewall plugin before 4.0.7 for WordPress has multiple SQL injection issues.
Affected Software
1 affected component
Tipsandtricks-hq All In One Wp Security \& Firewall Wordpress<4.0.7
Event History
Aug 14, 2019
CVE Published
via MITRE·03:19 PM
Data Sourced
via MITRE·03:19 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2016-10888.
2
What plugin is affected by this vulnerability?
The all-in-one-wp-security-and-firewall plugin is affected by this vulnerability.
3
What is the severity level of this vulnerability?
The severity level of this vulnerability is critical.
4
What is the CVE score for this vulnerability?
The CVE score for this vulnerability is 9.8.
5
How can I fix this vulnerability?
To fix this vulnerability, upgrade to version 4.0.7 or later of the all-in-one-wp-security-and-firewall plugin.