Input validation vulnerability in Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder 1.15.20

The Form Maker by 10Web plugin for WordPress is vulnerable to a security flaw in versions up to and including 1.5.19. This flaw allows unauthenticated attackers to upload any type of file to the server hosting the website using the signature field. If exploited, this could lead to remote code execution and further damage to the website.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.