Lucene search

K
vulnrichmentPatchstackVULNRICHMENT:CVE-2023-40609
HistoryNov 06, 2023 - 8:15 a.m.

CVE-2023-40609 WordPress Contact form 7 Custom validation Plugin <= 1.1.3 is vulnerable to SQL Injection

2023-11-0608:15:24
CWE-89
Patchstack
github.com
3
wordpress
contact form 7
sql injection
vulnerability

AI Score

7.6

Confidence

Low

SSVC

Exploitation

poc

Automatable

yes

Technical Impact

total

Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in Aiyaz, maheshpatel Contact form 7 Custom validation allows SQL Injection.This issue affects Contact form 7 Custom validation: from n/a through 1.1.3.

AI Score

7.6

Confidence

Low

SSVC

Exploitation

poc

Automatable

yes

Technical Impact

total

Related for VULNRICHMENT:CVE-2023-40609