CVE-2021-24125

Unvalidated input in the Contact Form Submissions WordPress plugin before 1.7.1, could lead to SQL injection in the wpcf7_contact_form GET parameter when submitting a filter request as a high privilege user (admin+)
References
Configurations

Configuration 1

cpe:2.3:a:contact_form_submissions_project:contact_form_submissions:*:*:*:*:*:wordpress:*:*

Information

Published : 2021-03-18 03:15

Updated : 2022-05-27 06:46


NVD link : CVE-2021-24125

Mitre link : CVE-2021-24125

Products Affected
No products.
CWE