Input validation vulnerability in Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress 7.1.1

The Advanced Page Visit Counter plugin for WordPress is vulnerable to a type of attack called SQL Injection. This type of attack can happen when users are allowed to input data like names, email addresses, or other information. In this case, the Advanced Page Visit Counter plugin is vulnerable to this type of attack because it does not properly escape the data that is input by users and does not prepare the existing SQL query enough. If an attacker with user access privileges at least as high as a contributor is able to get access to the data, they could use additional SQL queries to extract sensitive information from the database.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.