Description
SQL injection vulnerability in the FireStats plugin before 1.6.2-stable for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
References (2)
Core 2
Core References
Patch, Vendor Advisory x_refsource_confirm
http://firestats.cc/wiki/ChangeLog#a1.6.2-stable13062009
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/35400
Scores
EPSS
0.0205
EPSS Percentile
79.2%
Details
CWE
CWE-89
Status
published
Products (48)
edgewall/firestats
0.9.0-beta
edgewall/firestats
0.9.1-beta
edgewall/firestats
0.9.2-beta
edgewall/firestats
0.9.3-beta
edgewall/firestats
0.9.4-beta
edgewall/firestats
0.9.5-beta
edgewall/firestats
0.9.6-beta
edgewall/firestats
0.9.7-beta
edgewall/firestats
0.9.8-beta
edgewall/firestats
0.9.9
... and 38 more
Published
Jun 22, 2009
Tracked Since
Feb 18, 2026