cleantalk
Vulnerabilities and Security Researches

Contact Us Page – Contact People, CVE-2025-28967

CVE, Research URL

CVE-2025-28967

Published on
Jul 04, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Steve Truman Contact Us page - Contact people LITE allows SQL Injection. This issue affects Contact Us page - Contact people LITE: from n/a through 3.7.4.
Affected versions
Min -, max 3.7.4.
Status
vulnerable