CVE-2025-59008: WordPress ZIP Code Based Content Protection plugin <= 1.0.0 - SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PressTigers ZIP Code Based Content Protection allows SQL Injection. This issue affects ZIP Code Based Content Protection: from n/a through 1.0.0.
Other sources
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PressTigers ZIP Code Based Content Protection zip-code-based-content-protection allows SQL Injection.This issue affects ZIP Code Based Content Protection: from n/a through <= 1.0.0.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59008?
CVE-2025-59008 is a critical vulnerability due to its potential for SQL Injection, which can lead to unauthorized access to the database.
How do I fix CVE-2025-59008?
To fix CVE-2025-59008, update the PressTigers ZIP Code Based Content Protection plugin to the latest version beyond 1.0.0.
Who is affected by CVE-2025-59008?
CVE-2025-59008 affects users of PressTigers ZIP Code Based Content Protection versions up to and including 1.0.0.
What kind of attacks can be executed due to CVE-2025-59008?
Due to CVE-2025-59008, attackers can execute SQL Injection attacks, allowing them to manipulate database queries.
Is there a known exploit for CVE-2025-59008?
Yes, there are known exploitation methods for CVE-2025-59008 that leverage SQL Injection vulnerabilities.