Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in Icegram Email Subscribers & Newsletters Plugin for WordPress v4.4.8 allows a remote, authenticated attacker to determine the value of database fields.
- https://www.tenable.com/security/research/tra-2020-44-0
- https://github.com/20142995/nuclei-templates