📦

arforms

Vendor: reputeinfosystems

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 28 Total Indexed
Avg. EPSS 1.44% Exploit Prob.
Latest CVE CVE-2024-10504 May 15

Security Vulnerability Index

Page 2 / 3
8.5 CVSS

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in reputeinfosystems ARForms arforms.This issue affects ARForms: from n/a through <= 6.4.

EPSS: 0.57%
7.5 CVSS
CVE-2019-16902
Exploit Found

In the ARforms plugin 3.7.1 for WordPress, arf_delete_file in arformcontroller.php allows unauthenticated deletion of an arbitrary file by supplying the full pathname.

EPSS: 9.73%