Extension WordPress
Vulnérabilités Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder, page 3
Cette page rassemble les failles publiées pour Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder
42 fiches
Form Maker by 10Web <= 1.13.4 – Cross-Site Request Forgery to Local File Inclusion
The 10Web Form Maker plugin before 1.13.5 for WordPress allows CSRF via the wp-admin/admin-ajax.php action parameter, with resultant local file inclusion via directory traversal, because there can be a discrepancy between the $_POST['action'] value and the $_GET['action'] value,…
*-1.13.4
1.13.5
05/04/2019
Form Maker by 10Web <= 1.12.21 – CSV Injection
The WebDorado "Form Maker by WD" plugin before 1.12.22 for WordPress allows CSV injection.
[*, 1.12.22)
1.12.22
27/04/2018
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.