Rock Lobster Contact Form 7 before 3.7.2 allows remote attackers to bypass the CAPTCHA protection mechanism and submit arbitrary form data by omitting the _wpcf7_captcha_challenge_captcha-719 parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Contact_form_7 | Rocklobster | * | 3.7.1 (including) |
Contact_form_7 | Rocklobster | 3.6 (including) | 3.6 (including) |
Contact_form_7 | Rocklobster | 3.7 (including) | 3.7 (including) |