Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Infusionsoft Gravity Forms Project Subscribe
Filtered by product Infusionsoft Gravity Forms
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-6446 1 Infusionsoft Gravity Forms Project 1 Infusionsoft Gravity Forms 2015-10-01 7.5 HIGH N/A
The Infusionsoft Gravity Forms plugin 1.5.3 through 1.5.10 for WordPress does not properly restrict access, which allows remote attackers to upload arbitrary files and execute arbitrary PHP code via a request to utilities/code_generator.php.