CVE-2024-51837

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sophia M Williams WP Contest wp-contest allows SQL Injection.This issue affects WP Contest: from n/a through <= 1.0.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:andsonsdesign:wp-contest:1.0.0:*:*:*:*:wordpress:*:*

History

23 Apr 2026, 15:20

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.5
v2 : unknown
v3 : 8.5

01 Apr 2026, 16:19

Type Values Removed Values Added
Summary (en) Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SONS Creative Development WP Contest allows SQL Injection.This issue affects WP Contest: from n/a through 1.0.0. (en) Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sophia M Williams WP Contest wp-contest allows SQL Injection.This issue affects WP Contest: from n/a through <= 1.0.0.
References
  • {'url': 'https://patchstack.com/database/vulnerability/wp-contest/wordpress-wp-contest-plugin-1-0-0-sql-injection-vulnerability?_s_id=cve', 'tags': ['Third Party Advisory'], 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/wp-contest/vulnerability/wordpress-wp-contest-plugin-1-0-0-sql-injection-vulnerability?_s_id=cve -

14 Nov 2024, 18:43

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 8.5
v2 : unknown
v3 : 6.5
CPE cpe:2.3:a:andsonsdesign:wp-contest:1.0.0:*:*:*:*:wordpress:*:*
First Time Andsonsdesign
Andsonsdesign wp-contest
References () https://patchstack.com/database/vulnerability/wp-contest/wordpress-wp-contest-plugin-1-0-0-sql-injection-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/wp-contest/wordpress-wp-contest-plugin-1-0-0-sql-injection-vulnerability?_s_id=cve - Third Party Advisory

12 Nov 2024, 13:55

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de neutralización incorrecta de elementos especiales utilizados en un comando SQL ('Inyección SQL') en SONS Creative Development WP Contest permite la inyección SQL. Este problema afecta a WP Contest: desde n/a hasta 1.0.0.

11 Nov 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-11 06:15

Updated : 2026-06-17 08:06


NVD link : CVE-2024-51837

Mitre link : CVE-2024-51837

CVE.ORG link : CVE-2024-51837


JSON object : View

Products Affected

andsonsdesign

  • wp-contest
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')