CVE-2017-16955

Publication date

2017-11-27 10:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in the InLinks plugin through 1.1 for WordPress allows authenticated users to execute arbitrary SQL commands via the "keyword" parameter to /wp-admin/options-general.php?page=inlinks/inlinks.php.