Looking for the vulnerability index of Invicti's legacy products?
WordPress Plugin EZ SQL Reports Shortcode Widget and DB Backup Arbitrary SQL Query Execution Vulnerability (4.16.38) - Vulnerability Database

WordPress Plugin EZ SQL Reports Shortcode Widget and DB Backup Arbitrary SQL Query Execution Vulnerability (4.16.38)

Description

WordPress Plugin EZ SQL Reports Shortcode Widget and DB Backup is prone to an arbitrary SQL query execution vulnerability. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database. WordPress Plugin EZ SQL Reports Shortcode Widget and DB Backup version 4.16.38 is vulnerable; prior versions may also be affected.

Remediation

Update to plugin version 4.17.38 or latest