Input validation vulnerability in WordPress Classifieds Plugin – Ad Directory & Listings by AWP Classifieds 4.2.1

The AWP Classifieds plugin for WordPress has a security problem that affects versions up to and including 4.2.1. Attackers who do not need to be logged in can add extra pieces of code to existing queries which can be used to access sensitive information from the database. This happens because the plugin did not properly escape the user-supplied parameter and the existing query was not prepared in the right way.

Detected in:

AWP Classifieds fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.