GobyVuls/CVE-2022-1442.md
2023-04-13 15:29:51 +08:00

1.1 KiB
Raw Permalink Blame History

WordPress plugin Metform forms Information Disclosure (CVE-2022-1442)

Vulnerability WordPress plugin Metform forms Information Disclosure (CVE-2022-1442)
Chinese name WordPress Metform 插件 forms 文件信息泄露漏洞CVE-2022-1442
CVSS core 7.5
FOFA Query (click to view the results directly) body="wp-content/plugins/metform/"
Number of assets affected 13517
Description WordPress plugin Metform is a secure contact form plugin for WordPress. There is a security vulnerability in the WordPress plugin Metform. The vulnerability is caused by improper access control in the ~/core/forms/action.php file, and attackers can obtain various key information of users.
Impact There is a security vulnerability in the WordPress plugin Metform. The vulnerability is caused by improper access control in the ~/core/forms/action.php file, and attackers can obtain various key information of users.