CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects WordPress. It involves a SQL injection risk.
CVE
CVE-2015-9452
Severity
CRITICAL
CVSS
9.8
EPSS
2.37%
WordPress
Original NVD Description
The nex-forms-express-wp-form-builder plugin before 4.6.1 for WordPress has SQL injection via the wp-admin/admin.php?page=nex-forms-main nex_forms_Id parameter.
Related CVEs
Other vulnerabilities affecting the same vendor(s)