Input validation vulnerability in ImageLinks Interactive Image Builder for WordPress 1.5.4

The ImageLinks Interactive Image Builder for WordPress plugin for WordPress is not secure in versions up to and including 1.5.4. Attackers with administrator-level access or higher can use this vulnerability to get access to sensitive information from the database. This is done by adding extra pieces of code to the existing SQL query, which is made possible due to insufficient escaping of user input and lack of proper preparation of the SQL query.

Detected in:

ImageLinks – Interactive Image Builder fixed vulnerable versions:
ImageLinks Interactive Image Builder for WordPress fixed vulnerable versions: >= * <= 1.5.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.