Vulnerabilities > 10Web > Form Maker > 1.15.4

DATE CVE VULNERABILITY TITLE RISK
2023-10-18 CVE-2023-45071 Unspecified vulnerability in 10Web Form Maker
Unauth.
network
low complexity
10web
6.1
2023-10-16 CVE-2023-4666 Unspecified vulnerability in 10Web Form Maker
The Form Maker by 10Web WordPress plugin before 1.15.20 does not validate signatures when creating them on the server from user input, allowing unauthenticated users to create arbitrary files and lead to RCE
network
low complexity
10web
critical
9.8
2022-10-25 CVE-2022-3300 Unspecified vulnerability in 10Web Form Maker
The Form Maker by 10Web WordPress plugin before 1.15.6 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin
network
low complexity
10web
7.2