PT-2026-73115 · WordPress · User-Login-History
CVSS v3.1
4.9
Medium
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
User Login History versions prior to 2.1.8
Description
The User Login History plugin for WordPress contains a SQL Injection flaw, which occurs when an application fails to properly sanitize or escape input used in a database query, allowing an attacker to interfere with the queries. This issue is caused by insufficient escaping of the user-supplied
blog id parameter and a lack of proper preparation of the SQL query. Authenticated attackers with Administrator-level access or higher can append additional SQL queries to extract sensitive information from the database. This issue is only exploitable on multisite installations.Recommendations
Update User Login History to version 2.1.8 or later.
As a temporary mitigation, restrict access to the
blog id parameter in multisite environments until the update is applied.Fix
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
User-Login-History