CYBERHAWK / CVE / CVE-2017-20245
CVE-2017-20245
HIGH
CVSS 8.2
other
The flaw
Wow Viral Signups 2.1 WordPress plugin contains an SQL injection vulnerability that allows unauthenticated attackers to extract database information by exploiting the unescaped 'idsignup' POST parameter. Attackers can send crafted requests
What to do
Review advisory and patch per vendor guidance.