CVE-2015-10126
MEDIUMEasy2Map Photos Plugin 1.0.1 - WordPress - SQL Injection
Title source: llmDescription
A vulnerability classified as critical was found in Easy2Map Photos Plugin 1.0.1 on WordPress. This vulnerability affects unknown code. The manipulation leads to sql injection. The attack can be initiated remotely. Upgrading to version 1.1.0 is able to address this issue. The patch is identified as 503d9ee2482d27c065f78d9546f076a406189908. It is recommended to upgrade the affected component. VDB-241318 is the identifier assigned to this vulnerability.
References (3)
Core 3
Core References
Third Party Advisory vdb-entry
https://vuldb.com/?id.241318
Third Party Advisory signature
permissions-required
https://vuldb.com/?ctiid.241318
Permissions Required patch
https://github.com/wp-plugins/easy2map-photos/commit/503d9ee2482d27c065f78d9546f076a406189908
Scores
CVSS v3
6.3
EPSS
0.0050
EPSS Percentile
39.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
total
Details
CWE
CWE-89
Status
published
Products (1)
steven_ellis/easy2map_photos
< 1.1.0
Published
Oct 06, 2023
Tracked Since
Feb 18, 2026