SQL injection vulnerability in form.php in the FormCraft plugin 1.3.7 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter.Referenceshttp://packetstormsecurity.com/files/124343/wpformcraft-sql.txthttps://exchange.xforce.ibmcloud.com/vulnerabilities/89581http://www.exploit-db.com/exploits/30002http://secunia.com/advisories/56044http://www.securityfocus.com/bid/64183