CVE-2024-53807: WordPress WP Mailster plugin <= 1.8.16.0 - SQL Injection vulnerability
Published Dec 6, 2024
·Updated
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in brandtoss WP Mailster wp-mailster allows Blind SQL Injection.This issue affects WP Mailster: from n/a through <= 1.8.16.0.
Affected Software
3 affected components
brandtoz WP Mailster<=1.8.16.0
WordPress WP Mailster<=1.8.16.0
Wpmailster Wp Mailster Wordpress<1.8.17
Remediation
Information
Update the WordPress WP Mailster plugin to the latest available version (at least 1.8.17.0).
Event History
Dec 6, 2024
CVE Published
via MITRE·01:06 PM
Data Sourced
via MITRE·01:06 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-53807?
CVE-2024-53807 has been classified as a high-severity vulnerability due to its potential for exploitation through SQL injection.
2
How do I fix CVE-2024-53807?
To fix CVE-2024-53807, update WP Mailster to version 1.8.17 or later.
3
What does CVE-2024-53807 affect?
CVE-2024-53807 affects the WP Mailster plugin up to version 1.8.16.0 within WordPress installations.
4
What type of vulnerability is CVE-2024-53807?
CVE-2024-53807 is identified as an SQL injection vulnerability, specifically a blind SQL injection.
5
Which versions of WP Mailster are vulnerable to CVE-2024-53807?
Versions of WP Mailster from n/a through 1.8.16.0 are vulnerable to CVE-2024-53807.