Access violation vulnerability in Flamix: Bitrix24 and Contact Form 7 integrations 3.1.0

A plugin called Flamix, which is used for integrating Bitrix24 and Contact Form 7 on WordPress, has a security vulnerability in all versions up to 3.1.0. This is because the plugin does not prevent direct access to its files, making it possible for unauthorized attackers to find out the full path of the website. However, this information alone is not enough to cause harm to the website and another vulnerability would be needed for an attack to be successful.

Detected in:

Flamix: Bitrix24 and Contact Form 7 integrations fixed vulnerable versions: >= * <= 3.1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.