Input validation vulnerability in Legoeso PDF Manager 1.2.2

The Legoeso PDF Manager plugin for WordPress has a security issue that allows attackers to access sensitive information from the database. This vulnerability is present in all versions up to 1.2.2 and is caused by the plugin not properly filtering user-supplied data. This means that attackers with Author-level access or higher can add their own queries to existing ones and potentially extract confidential data.

Detected in:

Legoeso PDF Manager open vulnerable versions: >= * <= 1.2.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.