WordPress Plugin Vulnerabilities

Cforms & CformsII <= 14.7 - Remote Code Execution via Unauthorised File Upload

Affects Plugins

Fixed in 14.8
No known fix

References

Classification

Type
RCE
OWASP top 10
CWE

Miscellaneous

Submitter
pvdl & Bastian Germann
Verified
No

Timeline

Publicly Published
2014-12-30 (about 11 years ago)
Added
2015-01-13 (about 11 years ago)
Last Updated
2019-11-01 (about 6 years ago)

Other