Form Maker
by Web Dorado
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2018-5991 | Cri | 0.67 | 9.8 | 0.03 | Feb 17, 2018 | SQL Injection exists in the Form Maker 3.6.12 component for Joomla! via the id, from, or to parameter in a view=stats request, a different vulnerability than CVE-2015-2798. | ||
| CVE-2018-10504 | Hig | 0.54 | 7.8 | 0.05 | Apr 27, 2018 | The WebDorado "Form Maker by WD" plugin before 1.12.24 for WordPress allows CSV injection. |
- risk 0.67cvss 9.8epss 0.03
SQL Injection exists in the Form Maker 3.6.12 component for Joomla! via the id, from, or to parameter in a view=stats request, a different vulnerability than CVE-2015-2798.
- risk 0.54cvss 7.8epss 0.05
The WebDorado "Form Maker by WD" plugin before 1.12.24 for WordPress allows CSV injection.