CVE-2017-1002005

Publication date

2017-09-14 13:00:00

Family

larry_cashdollar

State

PUBLISHED

Description

Vulnerability in wordpress plugin DTracker v1.5, In file ./dtracker/delete.php user input isnt sanitized via the contact_id variable before adding it to the end of an SQL query.