CVE-2023-50846: WordPress RegistrationMagic Plugin <= 5.2.4.5 is vulnerable to SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RegistrationMagic RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login.This issue affects RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login: from n/a through 5.2.4.5.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-50846?
CVE-2023-50846 is rated as a critical vulnerability due to its potential to allow SQL injection attacks.
How do I fix CVE-2023-50846?
To fix CVE-2023-50846, update the RegistrationMagic plugin to the latest version beyond 5.2.4.5.
What types of attacks can CVE-2023-50846 enable?
CVE-2023-50846 can enable attackers to perform unauthorized database operations through SQL injection.
Which versions of the RegistrationMagic plugin are affected by CVE-2023-50846?
CVE-2023-50846 affects the RegistrationMagic plugin versions 5.2.4.5 and earlier.
Is CVE-2023-50846 specific to any platform?
Yes, CVE-2023-50846 is specifically associated with the WordPress platform.