CVE-2011-4671

Publication date

2011-12-02 18:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in adrotate/adrotate-out.php in the AdRotate plugin 3.6.6, and other versions before 3.6.8, for WordPress allows remote attackers to execute arbitrary SQL commands via the track parameter (aka redirect URL).