Input validation vulnerability in Pressference Exporter 1.0.3

The Pressference Exporter plugin for WordPress is vulnerable to a type of attack called SQL Injection in versions up to and including 1.0.3. This vulnerability is caused by not properly securing the user supplied data and not properly preparing the existing SQL query. This means that attackers who have administrator-level access or higher can append extra SQL queries to the existing ones, which can be used to access sensitive information from the database.

Detected in:

Pressference Exporter open vulnerable versions: >= * <= 1.0.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.