CRM Perks Integration for Salesforce
cpe:2.3:a:crmperks:integration_for_salesforce_and_contact_form_7,_wpforms,_elementor,_ninja_forms:*:*:*:*:wordpress:*:*
- <= 1.4.4
A full path disclosure vulnerability has been identified in the Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms plugin for WordPress, affecting all versions through 1.4.4. This vulnerability allows unauthenticated attackers to access the full path of the web application, potentially facilitating further attacks. While the disclosed information is not immediately harmful, it could be exploited in conjunction with other vulnerabilities to damage the affected website.
Exploitation of this vulnerability could lead to unauthorized exposure of the full server path, which may assist in launching additional attacks against the website.
Users are advised to update the plugin to version 1.4.5 or a later patched version.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.