Description
The jtrt-responsive-tables plugin before 4.1.2 for WordPress has SQL Injection via the admin/class-jtrt-responsive-tables-admin.php tableId parameter.
References (3)
Core 3
Core References
Exploit, Third Party Advisory x_refsource_misc
https://wpvulndb.com/vulnerabilities/8953
Release Notes x_refsource_misc
https://wordpress.org/plugins/jtrt-responsive-tables/#developers
Exploit, Third Party Advisory x_refsource_misc
http://lenonleite.com.br/en/2017/09/11/jtrt-responsive-tables-wordpress-plugin-sql-injection/
Scores
CVSS v3
8.8
EPSS
0.0191
EPSS Percentile
77.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-89
Status
published
Products (1)
jtrt_responsive_tables_project/jtrt_responsive_tables
< 4.1.2
Published
Sep 10, 2019
Tracked Since
Feb 18, 2026