WordPress HD Webplayer version 1.1 suffers from a remote SQL injection vulnerability.
794f8fb3c3303c1fd8753b97a7fade46db699ff0285978b9dae1170f973058ad
WordPress Webplayer Player third party plugin suffers from a remote SQL injection vulnerability. Note that this finding houses site-specific data.
d69cd4bc562251e4c95062dd6d91dc522ad3027613df830d537ee3bf94f409e3
Secunia Security Advisory - Two vulnerabilities have been discovered in the HD Webplayer plugin for WordPress, which can be exploited by malicious people to conduct SQL injection attacks.
6bfde749a3b0b05e6952048d2ed6b564abb7bce9b563a8fa56735881a61dece3
Secunia Security Advisory - A vulnerability has been discovered in PIPI Player PIPIWebPlayer ActiveX control, which can be exploited by malicious people to compromise a user's system.
dd5a49e111e9067e7551113edbcab57690c237a01adb3fdb9fb2c787f2fcdcf3
Secunia Security Advisory - Sud0 has discovered a vulnerability in SopCast WebPlayer ActiveX Control, which can be exploited by malicious people to compromise a user's system.
10e652a8d975a8d5de84993d67783d8d7af5f82f07c335622da599d9261fb00b
Core Security Technologies Advisory - Ston3D StandalonePlayer and WebPlayer are vulnerable to a command injection vulnerability, which can be exploited by malicious remote attackers. The vulnerability is due to the Ston3D scripting language. It provides the function 'system.openURL()' which does not properly sanitize the input before using it. This can be exploited to execute arbitrary commands with the privileges of the Stone3D player by opening a specially crafted file.
ba901a044dfa0737878b1901f13a67a16f2cb60751e063e166d74890420fe9f5