Input validation vulnerability in TSB Occasion Editor 1.2.1

The TSB Occasion Editor plugin for WordPress has a security issue in versions up to 1.2.1. This happens because the plugin does not properly protect against malicious attacks on user input and does not properly prepare the SQL queries. As a result, attackers who have subscriber-level access or higher can add their own SQL queries to existing ones, which can lead to sensitive information being stolen from the database.

Detected in:

TSB Occasion Editor open vulnerable versions: >= * <= 1.2.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.