Vulnerabilities
Vulnerable Software
Mg12:  >> Wp-Recentcomments  Security Vulnerabilities
SQL injection vulnerability in the WP-RecentComments plugin 2.0.7 for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter in an rc-content action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVSS Score
7.5
EPSS Score
0.005
Published
2012-02-14
Cross-site scripting (XSS) vulnerability in the rc_ajax function in core.php in the WP-RecentComments plugin before 2.0.7 for WordPress allows remote attackers to inject arbitrary web script or HTML via the page parameter, related to AJAX paging.
CVSS Score
4.3
EPSS Score
0.003
Published
2012-02-14


Contact Us

Shodan ® - All rights reserved