CVE-2019-13573

A SQL injection vulnerability exists in the FolioVision FV Flowplayer Video Player plugin before 7.3.19.727 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system.
Configurations

Configuration 1 (hide)

cpe:2.3:a:foliovision:fv_flowplayer_video_player:*:*:*:*:*:wordpress:*:*

History

01 Mar 2023, 16:22

Type Values Removed Values Added
References (MISC) https://wpvulndb.com/vulnerabilities/9451 - (MISC) https://wpvulndb.com/vulnerabilities/9451 - Third Party Advisory
References (CONFIRM) https://wordpress.org/plugins/fv-wordpress-flowplayer/#developers - Product, Third Party Advisory (CONFIRM) https://wordpress.org/plugins/fv-wordpress-flowplayer/#developers - Release Notes

Information

Published : 2019-07-17 16:15

Updated : 2024-02-04 20:20


NVD link : CVE-2019-13573

Mitre link : CVE-2019-13573

CVE.ORG link : CVE-2019-13573


JSON object : View

Products Affected

foliovision

  • fv_flowplayer_video_player
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')