9.8
CVSSv3

CVE-2019-13575

CVSSv4: NA | CVSSv3: 9.8 | CVSSv2: 7.5 | VMScore: 1000 | EPSS: 0.02087 | KEV: Not Included
Published: 18/07/2019 Updated: 21/11/2024

Vulnerability Summary

A SQL injection vulnerability exists in WPEverest Everest Forms plugin for WordPress up to and including 1.4.9. Successful exploitation of this vulnerability would allow a remote malicious user to execute arbitrary SQL commands on the affected system via includes/evf-entry-functions.php

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wpeverest everest forms