WordPress Fadvertisement plugin suffers from a remote SQL injection vulnerability.
7a0c1f93965ef9d2bb44f595dfe5547d386b27bab0b7e54ce79edb7f45ae222a
[+] Title: WordPress FAdvertisement Plugin Sql Injection Vulnerability
[+] Date: 2017/08/13
[+] Author: APA Golestan - GuCert
[+] Vendor Homepage: www.WordPress.org
[+] Tested on: Windows 10 & Kali Linux
[+] Vulnerable File: /Redirect.php
[+} Dork : inurl:/wp-content/plugins/FAdvertisement/Redirect.php?id=
### POC:
[+}
https://site/wp-content/plugins/FAdvertisement/Redirect.php?id=[SQL-Injection]
### Demo:
[+]
https://negaheghtesadi.ir/wp-content/plugins/FAdvertisement/Redirect.php?id=11
'
### Credit:
[+] Gucert.ir
================================
thank you for all packetstormsecurity admins d