Input validation vulnerability in Product Catalog – Catalog for WordPress 1.0.4

The WordPress plugin called “Product Catalog – Catalog for WordPress” has a security issue in all versions up to 1.0.4, which could allow attackers to access sensitive information from the database. This is due to a problem with how the plugin handles user input and the existing SQL query. This vulnerability can be exploited by unauthenticated attackers to add their own SQL queries and extract data from the database.

Detected in:

Product Catalog – Catalog for WordPress open vulnerable versions: >= * <= 1.0.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.