Vulnerabilities (CVE)

Filtered by vendor Reputeinfosystems Subscribe
Filtered by product Arforms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-16902 1 Reputeinfosystems 1 Arforms 2021-07-21 6.4 MEDIUM 7.5 HIGH
In the ARforms plugin 3.7.1 for WordPress, arf_delete_file in arformcontroller.php allows unauthenticated deletion of an arbitrary file by supplying the full pathname.