CVE-2023-47530: WordPress Redirect 404 Error Page to Homepage or Custom Page with Logs Plugin <= 1.8.7 is vulnerable to SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPVibes Redirect 404 Error Page to Homepage or Custom Page with Logs allows SQL Injection.This issue affects Redirect 404 Error Page to Homepage or Custom Page with Logs: from n/a through 1.8.7.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-47530?
CVE-2023-47530 is a critical SQL Injection vulnerability affecting certain versions of the WPVibes Redirect 404 Error Page plugin.
How do I fix CVE-2023-47530?
To fix CVE-2023-47530, update the WPVibes Redirect 404 Error Page to version 1.8.9 or later.
What type of vulnerability is CVE-2023-47530?
CVE-2023-47530 is classified as an SQL Injection vulnerability.
Which versions of WPVibes Redirect 404 Error Page are affected by CVE-2023-47530?
CVE-2023-47530 affects WPVibes Redirect 404 Error Page to Homepage or Custom Page with Logs versions prior to 1.8.9.
What can attackers do with CVE-2023-47530?
Attackers can exploit CVE-2023-47530 to execute arbitrary SQL commands in the database, potentially leading to data exposure or modification.