cleantalk
Vulnerabilities and Security Researches

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login, CVE-2020-8435

CVE, Research URL

CVE-2020-8435

Published on
Mar 12, 2020
Research Description
An issue was discovered in the RegistrationMagic plugin 4.6.0.0 for WordPress. There is SQL injection via the rm_analytics_show_form rm_form_id parameter.
Affected versions
max 4.6.0.3.
Status
vulnerable