CVE-2012-5327
medium
CVSS v3
—
CVSS v2
6.5
VIR risk
6.5
Description
Multiple SQL injection vulnerabilities in fs-admin/fs-admin.php in the Mingle Forum plugin 1.0.32.1 and other versions before 1.0.33 for WordPress allow remote authenticated users to execute arbitrary SQL commands via the (1) delete_usrgrp[] parameter in a delete_usergroups action, (2) usergroup parameter in an add_user_togroup action, or (3) add_forum_group_id parameter in an add_forum_submit action.
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No vendor mitigations ingested yet for this CVE. The mitigation-content worker queues fetches as references arrive — check back in a few minutes, or see the references list below.
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| cartpauj | mingle-forum | {"endIncluding":"1.0.32.1"} | |
| cartpauj | mingle-forum | 1.0.00 | |
| cartpauj | mingle-forum | 1.0.01 | |
| cartpauj | mingle-forum | 1.0.02 | |
| cartpauj | mingle-forum | 1.0.03 | |
| cartpauj | mingle-forum | 1.0.04 | |
| cartpauj | mingle-forum | 1.0.05 | |
| cartpauj | mingle-forum | 1.0.06 | |
| cartpauj | mingle-forum | 1.0.07 | |
| cartpauj | mingle-forum | 1.0.08 | |
| cartpauj | mingle-forum | 1.0.09 | |
| cartpauj | mingle-forum | 1.0.10 | |
| cartpauj | mingle-forum | 1.0.11 | |
| cartpauj | mingle-forum | 1.0.12 | |
| cartpauj | mingle-forum | 1.0.13 | |
| cartpauj | mingle-forum | 1.0.14 | |
| cartpauj | mingle-forum | 1.0.15 | |
| cartpauj | mingle-forum | 1.0.16 | |
| cartpauj | mingle-forum | 1.0.17 | |
| cartpauj | mingle-forum | 1.0.18 | |
| cartpauj | mingle-forum | 1.0.19 | |
| cartpauj | mingle-forum | 1.0.20 | |
| cartpauj | mingle-forum | 1.0.21 | |
| cartpauj | mingle-forum | 1.0.21.1 | |
| cartpauj | mingle-forum | 1.0.22 | |
| cartpauj | mingle-forum | 1.0.23 | |
| cartpauj | mingle-forum | 1.0.23.1 | |
| cartpauj | mingle-forum | 1.0.23.2 | |
| cartpauj | mingle-forum | 1.0.24 | |
| cartpauj | mingle-forum | 1.0.25 | |
| cartpauj | mingle-forum | 1.0.26 | |
| cartpauj | mingle-forum | 1.0.27 | |
| cartpauj | mingle-forum | 1.0.28 | |
| cartpauj | mingle-forum | 1.0.28.1 | |
| cartpauj | mingle-forum | 1.0.28.2 | |
| cartpauj | mingle-forum | 1.0.29 | |
| cartpauj | mingle-forum | 1.0.30 | |
| cartpauj | mingle-forum | 1.0.31 | |
| cartpauj | mingle-forum | 1.0.31.1 | |
| cartpauj | mingle-forum | 1.0.31.2 | |
| cartpauj | mingle-forum | 1.0.31.3 | |
| cartpauj | mingle-forum | 1.0.31.4 | |
| cartpauj | mingle-forum | 1.0.32 | |
| wordpress | wordpress | - | |
References
- http://packetstormsecurity.org/files/view/108915/wpmingleforum-sqlxss.txt
- http://plugins.trac.wordpress.org/changeset?reponame=&new=492859%40mingle-forum&old=487353%40mingle-forum
- http://wordpress.org/extend/plugins/mingle-forum/changelog/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/72641
- http://packetstormsecurity.org/files/view/108915/wpmingleforum-sqlxss.txt
- http://plugins.trac.wordpress.org/changeset?reponame=&new=492859%40mingle-forum&old=487353%40mingle-forum
- http://wordpress.org/extend/plugins/mingle-forum/changelog/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/72641
CWEs
CWE-89
Verify integrity in audit chain (admin only). AS-IS.