Input validation vulnerability in 3dady real-time web stats 1.0

The 3dady real-time web stats plugin for WordPress is vulnerable to a type of attack which could allow someone with access to a WordPress website to inject malicious code into pages which will be executed when another user views it. This is possible because the plugin does not properly check and filter the input and output of the website, allowing malicious code to be injected. This affects versions up to and including version 1.0 of the plugin.

Detected in:

3dady real-time web stats open vulnerable versions: >= * <= 1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.