WordPress.Visual.Form.Builder.Plugin.Information.Disclosure

description-logoDescription

This indicates an attack attempt to exploit an Unauthenticated Information Disclosure vulnerability in Visual Form Builder plugin for WordPress.
The vulnerability is due to insufficient sanitizing of user supplied inputs in the application. A remote attacker can exploit this to gain unauthorized access to sensitive information.

affected-products-logoAffected Products

Visual Form Builder 3.0.6 and below

Impact logoImpact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

recomended-action-logoRecommended Actions

Upgrade to Visual Form Builder 3.0.7 or higher.
https://wordpress.org/plugins/visual-form-builder/#developers

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2022-06-22 21.343 Default_action:pass:drop
2022-06-13 21.337