← back
CVE-2016-9482CWE-302

PHP FormMail Generator generates PHP code for standard web forms, and the code generated is vulnerable to authentication bypass

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 4.7%
exploitation probability
4.7%top 9% of all CVEs
observed exploitation
nono source reports it
Code generated by PHP FormMail Generator may allow a remote unauthenticated user to bypass authentication in the to access the administrator panel by navigating directly to /admin.php?mod=admin&func=panel
Affected products
PHP FormMail · Generator