9.8
CVSSv3

CVE-2023-36508

Published: 31/10/2023 Updated: 08/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BestWebSoft Contact Form to DB by BestWebSoft – Messages Database Plugin For WordPress contact-form-to-db allows SQL Injection.This issue affects Contact Form to DB by BestWebSoft – Messages Database Plugin For WordPress: from n/a up to and including 1.7.1.

Vulnerable Product Search on Vulmon Subscribe to Product

bestwebsoft contact form to db