First published: Sun Oct 20 2024(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeisle Multiple Page Generator Plugin – MPG allows SQL Injection.This issue affects Multiple Page Generator Plugin – MPG: from n/a through 3.4.7.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Themeisle Multiple Page Generator Plugin - MPG | <3.4.8 |
Update to 3.4.8 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-47325 is a high severity vulnerability due to its potential to allow SQL Injection.
To fix CVE-2024-47325, update the Multiple Page Generator Plugin – MPG to version 3.4.8 or later.
CVE-2024-47325 affects the Multiple Page Generator Plugin – MPG versions from n/a through 3.4.7.
CVE-2024-47325 is categorized as an SQL Injection vulnerability.
Yes, CVE-2024-47325 can potentially be exploited remotely if the vulnerable plugin is used in a web application.