Il WebDorado ""Form Maker da WD"" plugin prima di 1.12.24 per WordPress permette l’iniezione CSV. |
https://www.exploit-db.com/exploits/44559/ https://wordpress.org/plugins/form-maker/#developers https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10504 |
Vulnerabilità: CVE-2018-10504
