SQL Injection Vulnerability in WpJobBoard Plugin for WordPress
CVE-2018-5695
7.2HIGH
What is CVE-2018-5695?
The WpJobBoard plugin version 4.4.4 for WordPress contains a vulnerability that allows for SQL injection through improperly sanitized input parameters. Attackers can exploit this weakness by manipulating the 'order' or 'sort' arguments sent to the wpjb-job or wpjb-alerts module, particularly during requests to wp-admin/admin.php. This could lead to unauthorized access to sensitive data and potentially compromise the integrity of the WordPress site.