Skip to content
Noroxi

funnelforms records

17 published records for vendor funnelforms.

All records

17 records
  • Funnelforms Free <= 3.7.5.1 - Authenticated (Contributor+) PHP Object Injection

    HighCVSS 8.8No exploitEPSS 1%

    funnelforms · interactive contact form and multi step form builder with drag & drop editor – funnelforms freeDec 3, 2024

  • CVE-2024-6311
    28Monitor

    Funnelforms Free <= 3.7.3.2 - Authenticated (Administrator+) Arbitrary File Upload

    HighCVSS 7.2No exploitEPSS 1%

    funnelforms · funnelforms freeAug 28, 2024

  • CVE-2024-6312
    26Monitor

    Funnelforms Free <= 3.7.3.2 - Authenticated (Administrator+) Arbitrary File Deletion

    MediumCVSS 6.5No exploitEPSS 1%

    funnelforms · funnelforms freeAug 28, 2024

  • CVE-2023-5990
    26Monitor

    Funnelforms Free < 3.4.2 - Form Deletion/Duplication via CSRF

    MediumCVSS 6.5No exploitEPSS 0%

    funnelforms · funnelforms freeDec 4, 2023

  • CVE-2023-4950
    24Monitor

    Funnelforms Free < 3.4 Unauthenticated Stored Cross-Site Scripting

    MediumCVSS 6.1No exploitEPSS 1%

    funnelforms · funnelformsOct 16, 2023

  • CVE-2024-7447
    21Monitor

    Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free <= 3.7.3.2 - Missing Authorization to Unauthenticated Arbitrary

    MediumCVSS 5.3No exploitEPSS 0%

    funnelforms · funnelforms freeAug 28, 2024

  • CVE-2024-5857
    21Monitor

    Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free <= 3.7.3.2 - Missing Authorization to Unauthenticated Arbitrary

    MediumCVSS 5.3No exploitEPSS 0%

    funnelforms · funnelforms freeAug 29, 2024

  • CVE-2023-5386
    17Monitor

    Funnelforms Free <= 3.4 - Missing Authorization to Arbitrary Post Deletion

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023

  • CVE-2023-5387
    17Monitor

    Funnelforms Free <= 3.4 - Missing Authorization to Enable/Disable Dark Mode

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023

  • CVE-2023-5415
    17Monitor

    Funnelforms Free <= 3.4 - Missing Authorization to New Category Creation

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023

  • CVE-2023-5416
    17Monitor

    Funnelforms Free <= 3.4 - Missing Authorization to Category Deletion

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023

  • CVE-2023-5411
    17Monitor

    Funnelforms Free <= 3.4 - Missing Authorization to Post Modification

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023

  • CVE-2023-5417
    17Monitor

    Funnelforms Free <= 3.4 - Missing Authorization to Category Update

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023

  • CVE-2023-5419
    17Monitor

    Funnelforms Free <= 3.4 - Missing Authorization to Test Email Sending

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023

  • CVE-2023-5385
    17Monitor

    Funnelforms Free <= 3.4 - Missing Authorization to Arbitrary Post Duplication

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023

  • CVE-2023-5382
    17Monitor

    Funnelforms Free <= 3.4 - Cross-Site Request Forgery to Arbitrary Post Deletion

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023

  • CVE-2023-5383
    17Monitor

    Funnelforms Free <= 3.4 - Cross-Site Request Forgery to Arbitrary Post Duplication

    MediumCVSS 4.3No exploitEPSS 0%

    funnelforms · funnelformsNov 22, 2023