Extension WordPress
Vulnérabilités Contact Form by WD – responsive drag & drop contact form builder tool
Cette page rassemble les failles publiées pour Contact Form by WD – responsive drag & drop contact form builder tool, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Contact Form by WD – responsive drag & drop contact form builder tool
4 fiches
Contact Form Maker <= 1.13.23 – Authenticated (Administrator+) SQL Injection
The Contact Form Maker plugin for WordPress is vulnerable to blind SQL Injection in versions before 1.13.23 due to insufficient escaping on a user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes…
*-1.13.23
Non indiqué
15/06/2023
Contact Form by WD <= 1.13.4 – Cross-Site Request Forgery
The WebDorado Contact Form plugin before 1.13.5 for WordPress allows CSRF via the wp-admin/admin-ajax.php action parameter, with resultant local file inclusion via directory traversal, because there can be a discrepancy between the $_POST['action'] value and the $_GET['action'] value,…
[*, 1.13.5)
1.13.5
05/04/2019
Contact Form Maker <= 1.7.30 – Authenticated (Admin+) SQL Injection
The Contact Form Maker plugin for WordPress is vulnerable to blind SQL Injection via the ‘form_id’ parameter in versions before 1.7.31 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing…
[*, 1.7.31)
1.7.31
24/11/2015
Contact Form by WD – responsive drag & drop contact form builder tool <= 1.7.18 – Authorization Bypass
The Contact Form by WD – responsive drag & drop contact form builder tool plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the form_maker_cfm function in versions up to, and including,…
*-1.7.18
1.7.19
09/11/2014
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.