Описание
The Formidable Form Builder plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 2.05.03 via the frm_forms_preview AJAX action. This makes it possible for unauthenticated attackers to export all of the form entries for a given form.
Ссылки
- ExploitThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.05.03 (включая)
cpe:2.3:a:strategy11:formidable_form_builder:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 93%
0.10488
Средний
5.3 Medium
CVSS3
Дефекты
CWE-200
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 5.3
github
больше 1 года назад
The Formidable Form Builder plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 2.05.03 via the frm_forms_preview AJAX action. This makes it possible for unauthenticated attackers to export all of the form entries for a given form.
EPSS
Процентиль: 93%
0.10488
Средний
5.3 Medium
CVSS3
Дефекты
CWE-200
NVD-CWE-noinfo