Input validation vulnerability in BigContact Contact Page 1.5.8

The BigContact plugin for WordPress is not secure in versions 1.5.8 and earlier. This means that someone who is not authorized to make changes could use a link or other trick to make changes to the plugin’s settings. This is because the ‘functions.php’ and ‘saveForm.php’ files do not have the right kind of protection to stop this from happening.

Detected in:

BigContact Contact Page open vulnerable versions: >= * <= 1.5.8

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.