Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

WordPress WP-Download Plugin "dl_id" SQL Injection

BugsAlert Home > WordPress WP-Download Plugin "dl_id" SQL Injection
 
 

BL4CK has reported a vulnerability in the WP-Download plugin for WordPress, which can be exploited by malicious people to conduct SQL injection attacks.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/29608/

Learn more about WordPress WP-Download Plugin "dl_id" SQL Injection
 
Tags: wordpress wp-download plugin sql injection

Related Items

      FrSIRT - SWAT 4 Commands Processing Denial of Service Vulnerabilities

      Mandriva update for mozilla-firefox

      FrSIRT - Microsoft Windows IPsec Policy Data Disclosure Vulnerability (MS08-047)

      CVE-2008-4127 (ie)

      FrSIRT - Novell ZENworks Patch Management Multiple Insecure Temporary Files

      Facebook, MySpace Hit by Zero-Day Flaw

      FrSIRT - Drupal Local File Inclusion and Cross Site Scripting Vulnerabilities

 

Pixel