First published: Mon Mar 13 2023(Updated: )
SQL Injection vulnerability in VeronaLabs WP Statistics plugin <= 13.2.10 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WP Statistics | <13.2.11 |
Update to 13.2.11 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38074 is classified as a critical SQL Injection vulnerability affecting the WP Statistics plugin.
To fix CVE-2022-38074, update the WP Statistics plugin to version 13.2.11 or later.
Exploitation of CVE-2022-38074 can lead to unauthorized access and modification of database information.
CVE-2022-38074 affects WP Statistics plugin versions 13.2.10 and earlier.
CVE-2022-38074 can potentially be exploited by authenticated users with low-level permissions.