CVE-2014-1854

Publication date

2014-02-27 15:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in library/clicktracker.php in the AdRotate Pro plugin 3.9 through 3.9.5 and AdRotate Free plugin 3.9 through 3.9.4 for WordPress allows remote attackers to execute arbitrary SQL commands via the track parameter.