CVE-2020-6009: SQL Injection
Published Apr 1, 2020
·Updated
LearnDash Wordpress plugin version below 3.1.6 is vulnerable to Unauthenticated SQL Injection.
Affected Software
1 affected component
LearnDash LearnDash Wordpress<3.1.6
Event History
Apr 1, 2020
CVE Published
via MITRE·09:02 PM
Data Sourced
via MITRE·09:02 PM
DescriptionWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-6009.
2
What is the severity of CVE-2020-6009?
The severity of CVE-2020-6009 is critical (9.8).
3
What is the affected software for CVE-2020-6009?
The affected software for CVE-2020-6009 is the LearnDash Wordpress plugin version below 3.1.6.
4
What is the vulnerability description of CVE-2020-6009?
CVE-2020-6009 is a vulnerability in the LearnDash Wordpress plugin version below 3.1.6 that allows unauthenticated SQL injection.
5
How can I fix CVE-2020-6009?
To fix CVE-2020-6009, update your LearnDash Wordpress plugin to version 3.1.6 or above.