Vulnerability Details CVE-2015-4018
SQL injection vulnerability in feedwordpresssyndicationpage.class.php in the FeedWordPress plugin before 2015.0514 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the link_ids[] parameter in an Update action in the syndication.php page to wp-admin/admin.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.025
EPSS Ranking 84.7%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2015-4018
-
cpe:2.3:a:feedwordpress_project:feedwordpress:0.96
-
cpe:2.3:a:feedwordpress_project:feedwordpress:0.97
-
cpe:2.3:a:feedwordpress_project:feedwordpress:0.98
-
cpe:2.3:a:feedwordpress_project:feedwordpress:0.981
-
cpe:2.3:a:feedwordpress_project:feedwordpress:0.99
-
cpe:2.3:a:feedwordpress_project:feedwordpress:0.991
-
cpe:2.3:a:feedwordpress_project:feedwordpress:0.992
-
cpe:2.3:a:feedwordpress_project:feedwordpress:0.993
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2008.1030
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2008.1101
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2008.1105
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2008.1214
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2009.0612
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2009.0613
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2009.0618
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2009.0707
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2010.0528
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2010.0531
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2010.0602
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2010.0623
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2010.0903
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2010.0905
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2011.0211
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2011.0512
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2011.0531
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2011.0602
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2011.0706
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2011.0721
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2011.1018
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2011.1019
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2012.0503
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2012.0504
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2012.1212
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2012.1218
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2013.0504
-
cpe:2.3:a:feedwordpress_project:feedwordpress:2014.0805