CVE-2017-1002007

Publication date

2017-09-14 13:00:00

Family

larry_cashdollar

State

PUBLISHED

Description

Vulnerability in wordpress plugin DTracker v1.5, The code dtracker/save_mail.php doesnt check that the user is authorized before injecting new contacts into the wp_contact table.