AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-22275

HIGH · CVSS 8.8 EPSS 2.17%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-11-04 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.8. It affects WordPress.

CVE
CVE-2020-22275
Severity
HIGH
CVSS
8.8
EPSS
2.17%
WordPress

Original NVD Description

Easy Registration Forms (ER Forms) Wordpress Plugin 2.0.6 allows an attacker to submit an entry with malicious CSV commands. After that, when the system administrator generates CSV output from the forms information, there is no check on this inputs and the codes are executable.

Related CVEs

Other vulnerabilities affecting the same vendor(s)