Input validation vulnerability in HDW Player Plugin (Video Player & Video Gallery) 2.4.2

The HDW Player Plugin version 2.4.2 for WordPress has a security flaw that allows someone with administrator access to execute any type of SQL command on the videos page. This can be done through the edit action found in the wp-admin/admin.php admin page using the id parameter.

Detected in:

HDW Player Plugin (Video Player & Video Gallery) open vulnerable versions: >= * <= 2.4.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.