CVE-2019-12570: Xpertsol Server Status By Hostname/ip
High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.
A SQL injection vulnerability in the Xpert Solution "Server Status by Hostname/IP" plugin 4.6 for WordPress allows an authenticated user to execute arbitrary SQL commands via GET parameters.
Affected products
- Xpertsol Server Status By Hostname/ip: version 4.6 only
Published 2019-07-03. Last modified 2026-06-17.