Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Nucleus_genius Quasar form free – Contact Form Builder for WordPress allows SQL Injection.This issue affects Quasar form free – Contact Form Builder for WordPress: from n/a through 6.0.
References
Link | Resource |
---|---|
https://patchstack.com/database/vulnerability/quasar-form/wordpress-quasar-form-plugin-6-0-sql-injection-vulnerability?_s_id=cve | Third Party Advisory |
Configurations
History
09 Nov 2023, 20:10
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:quasar-form:quasar_form:*:*:*:*:*:wordpress:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
References | (MISC) https://patchstack.com/database/vulnerability/quasar-form/wordpress-quasar-form-plugin-6-0-sql-injection-vulnerability?_s_id=cve - Third Party Advisory | |
First Time |
Quasar-form
Quasar-form quasar Form |
04 Nov 2023, 00:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-11-04 00:15
Updated : 2024-02-28 20:33
NVD link : CVE-2023-35910
Mitre link : CVE-2023-35910
CVE.ORG link : CVE-2023-35910
JSON object : View
Products Affected
quasar-form
- quasar_form
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')