Input validation vulnerability in Answer My Question 1.3

The Answer My Question plugin for WordPress, up to version 1.3, has a security vulnerability. It is possible for unauthenticated attackers to add extra SQL queries to existing queries. These extra queries can be used to access and view sensitive information from the WordPress database. To protect against this, the user-supplied parameter needs to be escaped and the existing SQL query needs to be better prepared.

Detected in:

Answer My Question open vulnerable versions: >= * <= 1.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.