Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Infotuts SW Contact Form allows Blind SQL Injection.This issue affects SW Contact Form: from n/a through 1.0.
References
Link | Resource |
---|---|
https://patchstack.com/database/vulnerability/sw-contact-form/wordpress-sw-contact-form-plugin-1-0-sql-injection-vulnerability?_s_id=cve | Third Party Advisory |
Configurations
History
24 Oct 2024, 15:33
Type | Values Removed | Values Added |
---|---|---|
First Time |
Infotuts sw Contact Form
Infotuts |
|
CPE | cpe:2.3:a:infotuts:sw_contact_form:*:*:*:*:*:wordpress:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
References | () https://patchstack.com/database/vulnerability/sw-contact-form/wordpress-sw-contact-form-plugin-1-0-sql-injection-vulnerability?_s_id=cve - Third Party Advisory |
21 Oct 2024, 17:09
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
20 Oct 2024, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-20 10:15
Updated : 2024-10-24 15:33
NVD link : CVE-2024-49612
Mitre link : CVE-2024-49612
CVE.ORG link : CVE-2024-49612
JSON object : View
Products Affected
infotuts
- sw_contact_form
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')