First published: Mon Nov 11 2024(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SONS Creative Development WP Contest allows SQL Injection.This issue affects WP Contest: from n/a through 1.0.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress | =1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-51837 has been classified as a high-severity vulnerability due to its potential for SQL injection attacks.
The recommended fix for CVE-2024-51837 is to update the WP Contest plugin to version 1.0.1 or later, which addresses the SQL injection vulnerability.
CVE-2024-51837 is classified as an SQL injection vulnerability that allows attackers to manipulate SQL commands.
CVE-2024-51837 affects WP Contest plugin versions from n/a through 1.0.0.
Exploiting CVE-2024-51837 can allow an attacker to execute arbitrary SQL queries, potentially leading to unauthorized access to the database.