Security Advisory

CVE-2017-1002007

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-09-14 13:00:00
Last updated 2024-08-05 22:00:41
Assigner larry_cashdollar
CVSS score not scored
State PUBLISHED

Description

Vulnerability in wordpress plugin DTracker v1.5, The code dtracker/save_mail.php doesn't check that the user is authorized before injecting new contacts into the wp_contact table.