Input validation vulnerability in Mobile Assistant Connector 2.2.2

The Mobile Assistant Connector plugin for WordPress has a security issue which makes it vulnerable to a type of attack called SQL Injection. This means that, in versions up to 2.2.2, attackers can insert additional SQL queries into already existing queries. This can be used to access sensitive information from the database, such as passwords and usernames. The plugin does not properly escape user supplied parameters and does not adequately prepare existing SQL queries, which is why the vulnerability exists.

Detected in:

Mobile Assistant Connector open vulnerable versions: >= 2.2.2 <= 2.2.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.