Search Results (322813 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2015-9347 1 Plot 1 Plotly 2024-11-21 N/A
The wp-plotly plugin before 1.0.3 for WordPress has XSS by authors.
CVE-2015-9346 1 Codepeople 1 Polls Cp 2024-11-21 N/A
The cp-polls plugin before 1.0.5 for WordPress has XSS.
CVE-2015-9345 1 Petersplugins 1 Link Log 2024-11-21 N/A
The link-log plugin before 2.0 for WordPress has HTTP Response Splitting.
CVE-2015-9344 1 Perafox 1 Link Log 2024-11-21 N/A
The link-log plugin before 2.1 for WordPress has SQL injection.
CVE-2015-9343 1 Impress 1 Wp Rollback 2024-11-21 N/A
The wp-rollback plugin before 1.2.3 for WordPress has CSRF.
CVE-2015-9342 1 Impress 1 Wp Rollback 2024-11-21 N/A
The wp-rollback plugin before 1.2.3 for WordPress has XSS.
CVE-2015-9341 1 Iptanus 1 Wordpress File Upload 2024-11-21 N/A
The wp-file-upload plugin before 3.4.1 for WordPress has insufficient restrictions on upload of .php.js files.
CVE-2015-9340 1 Iptanus 1 Wordpress File Upload 2024-11-21 N/A
The wp-file-upload plugin before 3.0.0 for WordPress has insufficient restrictions on upload of php, js, pht, php3, php4, php5, phtml, htm, html, and htaccess files.
CVE-2015-9339 1 Iptanus 1 Wordpress File Upload 2024-11-21 N/A
The wp-file-upload plugin before 2.7.1 for WordPress has insufficient restrictions on upload of .js files.
CVE-2015-9338 1 Iptanus 1 Wordpress File Upload 2024-11-21 N/A
The wp-file-upload plugin before 2.5.0 for WordPress has insufficient restrictions on upload of .php files.
CVE-2015-9337 1 Cozmoslabs 1 Profile Builder 2024-11-21 N/A
The profile-builder plugin before 2.1.4 for WordPress has no access control for activating or deactivating addons via AJAX.
CVE-2015-9336 1 Codection 1 Clean Login 2024-11-21 N/A
The clean-login plugin before 1.5.1 for WordPress has reflected XSS.
CVE-2015-9335 1 Bestwebsoft 1 Limit Attempts 2024-11-21 N/A
The limit-attempts plugin before 1.1.1 for WordPress has SQL injection during IP address handling.
CVE-2015-9334 1 Email-newsletter Project 1 Email-newsletter 2024-11-21 N/A
The email-newsletter plugin through 20.15 for WordPress has SQL injection.
CVE-2015-9333 1 Cformsii Project 1 Cformsii 2024-11-21 9.8 Critical
The cforms2 plugin before 14.6.10 for WordPress has SQL injection.
CVE-2015-9332 1 Wordpress Uninstall Project 1 Wordpress Uninstall 2024-11-21 N/A
The uninstall plugin before 1.2 for WordPress has CSRF to delete all tables via the wp-admin/admin-ajax.php?action=uninstall URI.
CVE-2015-9331 1 Soflyy 1 Wp All Import 2024-11-21 N/A
The wp-all-import plugin before 3.2.4 for WordPress has no prevention of unauthenticated requests to adminInit.
CVE-2015-9330 1 Soflyy 1 Wp All Import 2024-11-21 N/A
The wp-all-import plugin before 3.2.5 for WordPress has blind SQL injection.
CVE-2015-9329 1 Soflyy 1 Wp All Import 2024-11-21 N/A
The wp-all-import plugin before 3.2.5 for WordPress has reflected XSS.
CVE-2015-9328 1 Cozmoslabs 1 Profile Builder 2024-11-21 N/A
The profile-builder plugin before 2.2.5 for WordPress has XSS.