Input validation vulnerability in GeoDirectory – WordPress Business Directory Plugin, or Classified Directory 2.3.28

The GeoDirectory plugin for WordPress is a security risk. It can be used to access sensitive information from the database. The problem is present in all versions up to 2.3.28. It occurs because the plugin does not properly escape user-supplied parameters and does not prepare existing SQL queries properly. To protect yourself, you should make sure you have the latest version of the plugin installed.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.