CVE-2016-20062 | Ollie Armstrong Simply Poll 1.4.1 on WordPress POST Parameter admin-ajax.php spAjaxResults pollid sql injection (Exploit 40971)

SecurityVulns

A vulnerability was found in Ollie Armstrong Simply Poll 1.4.1 on WordPress. It has been declared as critical. The impacted element is the function spAjaxResults of the file admin-ajax.php of the component POST Parameter Handler. Executing a manipulation of the argument pollid can lead to sql injection. This vulnerability only affects products that are no longer supported by the maintainer.

This vulnerability appears as CVE-2016-20062. The attack may be performed from remote. In addition, an exploit is available.VulDB Recent EntriesRead More