CVE-2013-5917

Rodrigo Coimbra Nospam Pti - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in wp-comments-post.php in the NOSpam PTI plugin 2.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the comment_post_ID parameter.

Exploits (1)

exploitdb WORKING POC
by Alexandro Silva · textwebappsphp
https://www.exploit-db.com/exploits/28485

References (1)

Core 1
Core References
Exploit mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2013-09/0102.html

Scores

EPSS 0.0156
EPSS Percentile 81.6%

Details

CWE
CWE-89
Status published
Products (1)
rodrigo_coimbra/nospam_pti 2.1
Published Sep 23, 2013
Tracked Since Feb 18, 2026