CVE-2013-3532

Webdorado Spider Video Player - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in settings.php in the Web Dorado Spider Video Player plugin 2.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the theme parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Ashiyane Digital Security Team · textwebappsphp
https://www.exploit-db.com/exploits/38458

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/98332
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/92264
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/70763
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/83374
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/59021

Scores

EPSS 0.0333
EPSS Percentile 87.3%

Details

CWE
CWE-89
Status published
Products (1)
webdorado/spider_video_player 2.1
Published May 10, 2013
Tracked Since Feb 18, 2026