Input validation vulnerability in Task Manager Pro – Task Management Plugin For WordPress 1.3.1

The Task Manager Pro plugin for WordPress can be vulnerable to a type of attack known as blind SQL Injection. This type of attack can allow an attacker who is authenticated, or logged in, to extract sensitive information from the database by appending additional SQL queries into existing queries. The vulnerability is present in all versions up to and including version 1.3.1, due to an insufficient escape of the user supplied parameter and a lack of preparation of the existing SQL query.

Detected in:

Task Manager Pro - Task Management Plugin For Wordpress open vulnerable versions: >= * <= 1.3.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.