RSS   Vulnerabilities for 'Arforms'   RSS

2019-09-27
 
CVE-2019-16902

CWE-20
 

 
In the ARforms plugin 3.7.1 for WordPress, arf_delete_file in arformcontroller.php allows unauthenticated deletion of an arbitrary file by supplying the full pathname.

 

 >>> Vendor: Reputeinfosystems 6 Products
Repute arforms
Arprice lite
Arforms
Contact form\, survey \& popup form plugin for wordpress - arforms form builder
Bookingpress
Pricing table


Copyright 2024, cxsecurity.com

 

Back to Top