CVE-2023-46084: WordPress Icons Font Loader Plugin <= 1.1.2 is vulnerable to SQL Injection
Published Nov 6, 2023
·Updated
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in bPlugins LLC Icons Font Loader allows SQL Injection.This issue affects Icons Font Loader: from n/a through 1.1.2.
Affected Software
1 affected component
bPlugins Icons Font Loader Wordpress<=1.1.2
Remediation
Information
Update to 1.1.2.1 or a higher version.
Event History
Nov 6, 2023
CVE Published
via MITRE·09:06 AM
Data Sourced
via MITRE·09:06 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-46084.
2
What is the title of this vulnerability?
The title of this vulnerability is 'WordPress Icons Font Loader Plugin <= 1.1.2 is vulnerable to SQL Injection.'
3
What is the severity of CVE-2023-46084?
The severity of CVE-2023-46084 is high with a severity value of 8.8.
4
What software versions are affected by CVE-2023-46084?
Icons Font Loader version n/a through 1.1.2 is affected by CVE-2023-46084.
5
How can I fix the vulnerability CVE-2023-46084?
To fix the vulnerability CVE-2023-46084, it is recommended to update Icons Font Loader plugin to version 1.1.3 or higher.