Forms generated by JQueryForm.com prior to 2022-02-05 allows a remote authenticated malicious user to access the cleartext credentials of all other form users. admin.php contains a hidden base64-encoded string with these credentials.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jqueryform jqueryform |