Output validation vulnerability in Simple Ads Manager 2.10.0.130

The Simple Ads Manager plugin for WordPress is vulnerable to an attack which could allow malicious users to gain access to a website running the plugin. In versions up to, and including, 2.9.8.125, attackers could use a technique called ‘unserialize’ to inject a type of code known as a ‘PHP Object’. This could potentially allow them to delete files, access sensitive data, or even execute code on the website. Even if the website does not have additional plugins or themes installed, this attack could still be successful.

Detected in:

Simple Ads Manager fixed vulnerable versions: >= * < 2.10.0.130

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.