CYBERHAWK / CVE / CVE-2017-20244
CVE-2017-20244
HIGH
CVSS 8.2
other
The flaw
Wow Forms WordPress Plugin version 2.1 contains an SQL injection vulnerability that allows unauthenticated attackers to read arbitrary database information by exploiting an unescaped POST parameter. Attackers can inject SQL code through the
What to do
Review advisory and patch per vendor guidance.