CVE-2014-8363
WordPress Spreadsheet 0.62 - SQL Injection via ss_id Parameter
Title source: llmDescription
SQL injection vulnerability in ss_handler.php in the WordPress Spreadsheet (wpSS) plugin 0.62 for WordPress allows remote attackers to execute arbitrary SQL commands via the ss_id parameter.
References (2)
Core 2
Core References
Exploit x_refsource_misc
http://packetstormsecurity.com/files/127771/WordPress-WPSS-0.62-SQL-Injection.html
Exploit vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/69089
Scores
EPSS
0.0215
EPSS Percentile
80.2%
Details
CWE
CWE-89
Status
published
Products (1)
wordpress_spreadsheet_project/wordpress_spreadsheet
0.62
Published
Oct 20, 2014
Tracked Since
Feb 18, 2026