Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-5533

SQL injection vulnerability in counter-options.php in the Count Per Day plugin before 3.4.1 for WordPress allows remote authenticated administrators to execute arbitrary SQL commands via the cpd_keep_month parameter to wp-admin/options-general.php. NOTE: this can be leveraged using CSRF to allow remote attackers to execute arbitrary SQL commands.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.095
EPSS Ranking 92.5%
CVSS Severity
CVSS v3 Score 7.2
CVSS v2 Score 6.5
Products affected by CVE-2015-5533


Contact Us

Shodan ® - All rights reserved