CVE-2015-10122
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Jul 18, 2023
Updated: May 17, 2024
CWE ID 89
Summary
CVE-2015-10122 is a critical vulnerability affecting the wp-donate Plugin up to version 1.4 on WordPress. The issue lies in an unknown part of the file includes/donate-display.php, resulting in sql injection. Attacks can be initiated remotely, making this a significant security concern. To mitigate this risk, upgrading to version 1.5 is recommended, with the patch identifier 019114cb788d954c5d1b36d6c62418619e93a757. Vulnerability Database assigned the identifier VDB-234249 to this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.