Hanley Shun

4 exploits Active since Feb 2017
CVE-2017-6097 EXPLOITDB HIGH text WORKING POC
Mail-masta - SQL Injection
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/campaign/count_of_send.php (Requires authentication to Wordpress admin) with the POST Parameter: camp_id.
CVSS 7.2
CVE-2017-6096 EXPLOITDB HIGH text WORKING POC
Mail-masta - SQL Injection
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/lists/view-list.php (Requires authentication to Wordpress admin) with the GET Parameter: filter_list.
CVSS 7.2
CVE-2017-6095 EXPLOITDB CRITICAL text WORKING POC
Mail-masta - SQL Injection
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/lists/csvexport.php (Unauthenticated) with the GET Parameter: list_id.
CVSS 9.8
CVE-2017-6098 EXPLOITDB HIGH text WORKING POC
Mail-masta - SQL Injection
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/campaign_save.php (Requires authentication to Wordpress admin) with the POST Parameter: list_id.
CVSS 7.2