Input validation vulnerability in Mikiurl WordPress Eklentisi 2.0

The Mikiurl WordPress Eklentisi plugin 2.0 and earlier versions for WordPress contain multiple security flaws that allow hackers to take control of an administrator’s account. These flaws enable the hacker to perform a type of attack called Cross-Site Scripting (XSS) by entering malicious code into the twitter_kullanici or twitter_sifre parameter on the mikiurl.php page when the kaydet action is performed on the wp-admin/options-general.php page.

Detected in:

Mikiurl Wordpress Eklentisi open vulnerable versions: >= * <= 2.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.