CVE-2020-11530

A blind SQL injection vulnerability is present in Chop Slider 3, a WordPress plugin. The vulnerability is introduced in the id GET parameter supplied to get_script/index.php, and allows an attacker to execute arbitrary SQL queries in the context of the WP database user.

Date published : 2020-05-08

http://seclists.org/fulldisclosure/2020/May/26

http://packetstormsecurity.com/files/157607/WordPress-ChopSlider-3-SQL-Injection.html