Vulnerabilities > Inlinks Project

DATE CVE VULNERABILITY TITLE RISK
2017-11-27 CVE-2017-16955 SQL Injection vulnerability in Inlinks Project Inlinks 1.0
SQL injection vulnerability in the InLinks plugin through 1.1 for WordPress allows authenticated users to execute arbitrary SQL commands via the "keyword" parameter to /wp-admin/options-general.php?page=inlinks/inlinks.php.
network
low complexity
inlinks-project CWE-89
6.5
2015-06-15 CVE-2015-4347 Cross-site Scripting vulnerability in Inlinks Project Inlinks
Cross-site scripting (XSS) vulnerability in the inLinks Integration module for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified path arguments.
4.3