Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
web-dorado contact form vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2019-11591
The WebDorado Contact Form plugin prior to 1.13.5 for WordPress allows CSRF via the wp-admin/admin-ajax.php action parameter, with resultant local file inclusion via directory traversal, because there can be a discrepancy between the $_POST['action'] value and the $_GET...
Web-dorado Contact Form
7.2
CVSSv3
CVE-2023-2655
The Contact Form by WD WordPress plugin up to and including 1.13.23 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin
Web-dorado Contact Form Maker
9.8
CVSSv3
CVE-2015-2798
SQL injection vulnerability in Joomla! Component Contact Form Maker 1.0.1 allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Web-dorado Contact Form Maker 1.0.1
1 EDB exploit
8.8
CVSSv3
CVE-2019-11557
The WebDorado Contact Form Builder plugin prior to 1.0.69 for WordPress allows CSRF via the wp-admin/admin-ajax.php action parameter, with resultant local file inclusion via directory traversal, because there can be a discrepancy between the $_POST['action'] value and t...
Web-dorado Wp Form Builder
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2006-4304
CVE-2024-4240
arbitrary
CVE-2024-31601
XSS
CVE-2023-20198
CVE-2024-4256
CVE-2024-3342
encryption
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started