CVE Database /
CVE-2008-2034
CVE
CVE-2008-2034 — Download Monitor [download-monitor] < 2.0.9
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2008-2034
|
Download Monitor [download-monitor] < 2.0.9 |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
Unknown
|
< 2.0.9
|
2.0.9 |
2008-04-28 |
—
|
CVE-2008-2034
The Download Monitor plugin for WordPress prior to version 2.0.9 contains a SQL injection flaw in the download.php file that permits unauthenticated attackers to inject malicious SQL code through the id parameter, potentially allowing unauthorized database manipulation and data compromise.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings