First published: Thu Mar 28 2024(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tomas WordPress Tooltips.This issue affects WordPress Tooltips: from n/a before 9.4.5.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Tooltip | <9.4.5 |
Update to 9.4.5 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-30243 is classified as a high-severity SQL Injection vulnerability.
To fix CVE-2024-30243, update the Tomas WordPress Tooltips plugin to version 9.4.5 or later.
CVE-2024-30243 affects the Tomas WordPress Tooltips plugin versions prior to 9.4.5.
CVE-2024-30243 allows an attacker to perform SQL Injection attacks, potentially compromising the database.
Yes, CVE-2024-30243 can be exploited remotely due to improper input handling in the plugin.