Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-34121 | The Contact Form by WD WordPress plugin through 1.13.23 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin |
Mon, 02 Jun 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-06-02T15:10:10.234Z
Reserved: 2023-05-11T12:32:48.856Z
Link: CVE-2023-2655
Updated: 2024-08-02T06:26:09.908Z
Status : Modified
Published: 2024-01-16T16:15:10.830
Modified: 2025-06-02T16:15:24.210
Link: CVE-2023-2655
No data.
OpenCVE Enrichment
No data.
EUVD