funnelforms kayıtları
funnelforms üreticisine ait 17 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %5,9
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-862 Missing Authorization10
- CWE-352 Cross-Site Request Forgery (CSRF)3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-502 Deserialization of Untrusted Data1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
17 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2024-10587İstismar yok | Funnelforms Free <= 3.7.5.1 - Authenticated (Contributor+) PHP Object Injectionfunnelforms · interactive contact form and multi step form builder with drag & drop editor – funnelforms free · CWE-502 | Yüksek8,8 | — | %0,6 | 3 Ara 2024 |
28İzleyin | CVE-2024-6311İstismar yok | Funnelforms Free <= 3.7.3.2 - Authenticated (Administrator+) Arbitrary File Uploadfunnelforms · funnelforms free · CWE-434 | Yüksek7,2 | — | %0,9 | 28 Ağu 2024 |
26İzleyin | CVE-2024-6312İstismar yok | Funnelforms Free <= 3.7.3.2 - Authenticated (Administrator+) Arbitrary File Deletionfunnelforms · funnelforms free · CWE-22 | Orta6,5 | — | %1,1 | 28 Ağu 2024 |
26İzleyin | CVE-2023-5990İstismar yok | Funnelforms Free < 3.4.2 - Form Deletion/Duplication via CSRFfunnelforms · funnelforms free · CWE-352 | Orta6,5 | — | %0,3 | 4 Ara 2023 |
24İzleyin | CVE-2023-4950İstismar yok | Funnelforms Free < 3.4 Unauthenticated Stored Cross-Site Scriptingfunnelforms · funnelforms · CWE-79 | Orta6,1 | — | %0,5 | 16 Eki 2023 |
21İzleyin | CVE-2024-7447İstismar yok | Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free <= 3.7.3.2 - Missing Authorization to Unauthenticated Arbitrary funnelforms · funnelforms free · CWE-862 | Orta5,3 | — | %0,4 | 28 Ağu 2024 |
21İzleyin | CVE-2024-5857İstismar yok | Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free <= 3.7.3.2 - Missing Authorization to Unauthenticated Arbitrary funnelforms · funnelforms free · CWE-862 | Orta5,3 | — | %0,3 | 29 Ağu 2024 |
17İzleyin | CVE-2023-5386İstismar yok | Funnelforms Free <= 3.4 - Missing Authorization to Arbitrary Post Deletionfunnelforms · funnelforms · CWE-862 | Orta4,3 | — | %0,4 | 22 Kas 2023 |
17İzleyin | CVE-2023-5387İstismar yok | Funnelforms Free <= 3.4 - Missing Authorization to Enable/Disable Dark Modefunnelforms · funnelforms · CWE-862 | Orta4,3 | — | %0,4 | 22 Kas 2023 |
17İzleyin | CVE-2023-5415İstismar yok | Funnelforms Free <= 3.4 - Missing Authorization to New Category Creationfunnelforms · funnelforms · CWE-862 | Orta4,3 | — | %0,4 | 22 Kas 2023 |
17İzleyin | CVE-2023-5416İstismar yok | Funnelforms Free <= 3.4 - Missing Authorization to Category Deletionfunnelforms · funnelforms · CWE-862 | Orta4,3 | — | %0,4 | 22 Kas 2023 |
17İzleyin | CVE-2023-5411İstismar yok | Funnelforms Free <= 3.4 - Missing Authorization to Post Modificationfunnelforms · funnelforms · CWE-862 | Orta4,3 | — | %0,4 | 22 Kas 2023 |
17İzleyin | CVE-2023-5417İstismar yok | Funnelforms Free <= 3.4 - Missing Authorization to Category Updatefunnelforms · funnelforms · CWE-862 | Orta4,3 | — | %0,4 | 22 Kas 2023 |
17İzleyin | CVE-2023-5419İstismar yok | Funnelforms Free <= 3.4 - Missing Authorization to Test Email Sendingfunnelforms · funnelforms · CWE-862 | Orta4,3 | — | %0,4 | 22 Kas 2023 |
17İzleyin | CVE-2023-5385İstismar yok | Funnelforms Free <= 3.4 - Missing Authorization to Arbitrary Post Duplicationfunnelforms · funnelforms · CWE-862 | Orta4,3 | — | %0,4 | 22 Kas 2023 |
17İzleyin | CVE-2023-5382İstismar yok | Funnelforms Free <= 3.4 - Cross-Site Request Forgery to Arbitrary Post Deletionfunnelforms · funnelforms · CWE-352 | Orta4,3 | — | %0,3 | 22 Kas 2023 |
17İzleyin | CVE-2023-5383İstismar yok | Funnelforms Free <= 3.4 - Cross-Site Request Forgery to Arbitrary Post Duplicationfunnelforms · funnelforms · CWE-352 | Orta4,3 | — | %0,2 | 22 Kas 2023 |
- CVE-2024-1058735İzleyin
Funnelforms Free <= 3.7.5.1 - Authenticated (Contributor+) PHP Object Injection
YüksekCVSS 8,8İstismar yokEPSS %1funnelforms · interactive contact form and multi step form builder with drag & drop editor – funnelforms free3 Ara 2024
- CVE-2024-631128İzleyin
Funnelforms Free <= 3.7.3.2 - Authenticated (Administrator+) Arbitrary File Upload
YüksekCVSS 7,2İstismar yokEPSS %1funnelforms · funnelforms free28 Ağu 2024
- CVE-2024-631226İzleyin
Funnelforms Free <= 3.7.3.2 - Authenticated (Administrator+) Arbitrary File Deletion
OrtaCVSS 6,5İstismar yokEPSS %1funnelforms · funnelforms free28 Ağu 2024
- CVE-2023-599026İzleyin
Funnelforms Free < 3.4.2 - Form Deletion/Duplication via CSRF
OrtaCVSS 6,5İstismar yokEPSS %0funnelforms · funnelforms free4 Ara 2023
- CVE-2023-495024İzleyin
Funnelforms Free < 3.4 Unauthenticated Stored Cross-Site Scripting
OrtaCVSS 6,1İstismar yokEPSS %1funnelforms · funnelforms16 Eki 2023
- CVE-2024-744721İzleyin
Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free <= 3.7.3.2 - Missing Authorization to Unauthenticated Arbitrary
OrtaCVSS 5,3İstismar yokEPSS %0funnelforms · funnelforms free28 Ağu 2024
- CVE-2024-585721İzleyin
Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free <= 3.7.3.2 - Missing Authorization to Unauthenticated Arbitrary
OrtaCVSS 5,3İstismar yokEPSS %0funnelforms · funnelforms free29 Ağu 2024
- CVE-2023-538617İzleyin
Funnelforms Free <= 3.4 - Missing Authorization to Arbitrary Post Deletion
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023
- CVE-2023-538717İzleyin
Funnelforms Free <= 3.4 - Missing Authorization to Enable/Disable Dark Mode
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023
- CVE-2023-541517İzleyin
Funnelforms Free <= 3.4 - Missing Authorization to New Category Creation
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023
- CVE-2023-541617İzleyin
Funnelforms Free <= 3.4 - Missing Authorization to Category Deletion
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023
- CVE-2023-541117İzleyin
Funnelforms Free <= 3.4 - Missing Authorization to Post Modification
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023
- CVE-2023-541717İzleyin
Funnelforms Free <= 3.4 - Missing Authorization to Category Update
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023
- CVE-2023-541917İzleyin
Funnelforms Free <= 3.4 - Missing Authorization to Test Email Sending
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023
- CVE-2023-538517İzleyin
Funnelforms Free <= 3.4 - Missing Authorization to Arbitrary Post Duplication
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023
- CVE-2023-538217İzleyin
Funnelforms Free <= 3.4 - Cross-Site Request Forgery to Arbitrary Post Deletion
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023
- CVE-2023-538317İzleyin
Funnelforms Free <= 3.4 - Cross-Site Request Forgery to Arbitrary Post Duplication
OrtaCVSS 4,3İstismar yokEPSS %0funnelforms · funnelforms22 Kas 2023