Input validation vulnerability in Track The Click 0.3.11

The Track The Click plugin for WordPress is vulnerable to a type of attack called time-based SQL Injection. This type of attack can be done by people with enough access to be able to send data to a specific website. This vulnerability was present in versions 0.3.11 and earlier, and allowed attackers to add extra data to website queries that could be used to steal sensitive information from the database. A partial fix was made in version 0.3.11, and the issue was completely resolved in version 0.3.12.

Detected in:

Track The Click fixed vulnerable versions: >= * <= 0.3.11

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.