Security Advisory
CVE-2018-12636
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The iThemes Security (better-wp-security) plugin before 7.0.3 for WordPress allows SQL Injection (by attackers with Admin privileges) via the logs page.