Input validation vulnerability in SEUR Oficial 2.2.10.2

The SEUR Official plugin for WordPress is at risk of being hacked through a technique called SQL Injection. This can happen through the ‘id_order’ section of the ‘/modules/seur/ajax/saveCodFee.php’ file in versions 2.2.10.2 and lower. The plugin does not properly protect against user input and the SQL query is not well prepared, making it possible for hackers to add their own queries and access private information from the database.

Detected in:

SEUR Oficial open vulnerable versions: >= * <= 2.2.10.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.