7.2
CVSSv3

CVE-2023-6620

Published: 15/01/2024 Updated: 19/01/2024
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

The POST SMTP Mailer WordPress plugin prior to 2.8.7 does not properly sanitise and escape several parameters before using them in SQL statements, leading to a SQL injection exploitable by high privilege users such as admin.

Vulnerable Product Search on Vulmon Subscribe to Product

wpexperts post smtp mailer

Vendor Advisories

Check Point Reference: CPAI-2023-1697 Date Published: 12 May 2024 Severity: High ...