CVE-2024-51672: WordPress BetterLinks plugin <= 2.1.7 - SQL Injection vulnerability
Published Nov 4, 2024
·Updated
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPDeveloper BetterLinks betterlinks allows SQL Injection.This issue affects BetterLinks: from n/a through <= 2.1.7.
Affected Software
1 affected component
WPDeveloper Betterlinks Wordpress<2.1.8
Remediation
Information
Update to 2.1.8 or a higher version.
Event History
Nov 4, 2024
CVE Published
via MITRE·02:08 PM
Data Sourced
via MITRE·02:08 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-51672?
CVE-2024-51672 has a critical severity level due to its potential for SQL Injection attacks.
2
How do I fix CVE-2024-51672?
To resolve CVE-2024-51672, update the WPDeveloper BetterLinks plugin to version 2.1.8 or higher.
3
What versions of BetterLinks are affected by CVE-2024-51672?
CVE-2024-51672 affects all versions of BetterLinks from n/a through 2.1.7.
4
What type of vulnerability is CVE-2024-51672?
CVE-2024-51672 is an SQL Injection vulnerability that can allow attackers to execute arbitrary SQL commands.
5
Can CVE-2024-51672 impact the security of my WordPress site?
Yes, CVE-2024-51672 can significantly compromise the security of your WordPress site by allowing unauthorized database access.