Security Advisory

CVE-2014-1854

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-02-27 15:00:00
Last updated 2024-08-06 09:58:15
Assigner mitre
State PUBLISHED

Description

SQL injection vulnerability in library/clicktracker.php in the AdRotate Pro plugin 3.9 through 3.9.5 and AdRotate Free plugin 3.9 through 3.9.4 for WordPress allows remote attackers to execute arbitrary SQL commands via the track parameter.