The Game Server Status WordPress plugin through 1.0 does not validate or escape the server_id parameter before using it in SQL statement, leading to an Authenticated SQL Injection in an admin pageCreditsNeppahReferenceshttps://wpscan.com/vulnerability/8a74a2a0-3d8c-427f-9a83-0160d652c5f0