Vulnerability in wordpress plugin DTracker v1.5, The code dtracker/save_mail.php doesn't check that the user is authorized before injecting new contacts into the wp_contact table.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: larry_cashdollar

Published: 2017-09-14T13:00:00

Updated: 2024-08-05T22:00:41.655Z

Reserved: 2017-09-14T00:00:00

Link: CVE-2017-1002007

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2017-09-14T13:29:00.467

Modified: 2024-11-21T03:04:55.867

Link: CVE-2017-1002007

cve-icon Redhat

No data.