CVE Database /
CVE-2017-20194
CVE · Medium
CVE-2017-20194 — Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More [formidable] < 2.05.03
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2017-20194
|
Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More [formidable] < 2.05.03 |
Exposure of Sensitive Information to an Unauthorized Actor |
Medium
5.3
|
< 2.05.03
|
2.05.03 |
2017-11-12 |
—
|
CVE-2017-20194
The Formidable Form Builder plugin contains a sensitive data exposure vulnerability affecting versions 2.05.03 and earlier through the frm_forms_preview AJAX action. An unauthenticated attacker can exploit this flaw to export all entries submitted to any form on the site. The vulnerability allows unauthorized access to potentially sensitive information collected through forms without requiring any authentication credentials.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings