Vulnerabilities > WP Dbmanager Project > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-01-05 | CVE-2014-8336 | Improper Input Validation vulnerability in Wp-Dbmanager Project Wp-Dbmanager The "Sql Run Query" panel in WP-DBManager (aka Database Manager) plugin before 2.7.2 for WordPress allows remote attackers to read arbitrary files by leveraging failure to sufficiently limit queries, as demonstrated by use of LOAD_FILE in an INSERT statement. | 6.5 |