Search Results (326423 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2015-9343 1 Impress 1 Wp Rollback 2024-11-21 N/A
The wp-rollback plugin before 1.2.3 for WordPress has CSRF.
CVE-2015-9342 1 Impress 1 Wp Rollback 2024-11-21 N/A
The wp-rollback plugin before 1.2.3 for WordPress has XSS.
CVE-2015-9341 1 Iptanus 1 Wordpress File Upload 2024-11-21 N/A
The wp-file-upload plugin before 3.4.1 for WordPress has insufficient restrictions on upload of .php.js files.
CVE-2015-9340 1 Iptanus 1 Wordpress File Upload 2024-11-21 N/A
The wp-file-upload plugin before 3.0.0 for WordPress has insufficient restrictions on upload of php, js, pht, php3, php4, php5, phtml, htm, html, and htaccess files.
CVE-2015-9339 1 Iptanus 1 Wordpress File Upload 2024-11-21 N/A
The wp-file-upload plugin before 2.7.1 for WordPress has insufficient restrictions on upload of .js files.
CVE-2015-9338 1 Iptanus 1 Wordpress File Upload 2024-11-21 N/A
The wp-file-upload plugin before 2.5.0 for WordPress has insufficient restrictions on upload of .php files.
CVE-2015-9337 1 Cozmoslabs 1 Profile Builder 2024-11-21 N/A
The profile-builder plugin before 2.1.4 for WordPress has no access control for activating or deactivating addons via AJAX.
CVE-2015-9336 1 Codection 1 Clean Login 2024-11-21 N/A
The clean-login plugin before 1.5.1 for WordPress has reflected XSS.
CVE-2015-9335 1 Bestwebsoft 1 Limit Attempts 2024-11-21 N/A
The limit-attempts plugin before 1.1.1 for WordPress has SQL injection during IP address handling.
CVE-2015-9334 1 Email-newsletter Project 1 Email-newsletter 2024-11-21 N/A
The email-newsletter plugin through 20.15 for WordPress has SQL injection.
CVE-2015-9333 1 Cformsii Project 1 Cformsii 2024-11-21 9.8 Critical
The cforms2 plugin before 14.6.10 for WordPress has SQL injection.
CVE-2015-9332 1 Wordpress Uninstall Project 1 Wordpress Uninstall 2024-11-21 N/A
The uninstall plugin before 1.2 for WordPress has CSRF to delete all tables via the wp-admin/admin-ajax.php?action=uninstall URI.
CVE-2015-9331 1 Soflyy 1 Wp All Import 2024-11-21 N/A
The wp-all-import plugin before 3.2.4 for WordPress has no prevention of unauthenticated requests to adminInit.
CVE-2015-9330 1 Soflyy 1 Wp All Import 2024-11-21 N/A
The wp-all-import plugin before 3.2.5 for WordPress has blind SQL injection.
CVE-2015-9329 1 Soflyy 1 Wp All Import 2024-11-21 N/A
The wp-all-import plugin before 3.2.5 for WordPress has reflected XSS.
CVE-2015-9328 1 Cozmoslabs 1 Profile Builder 2024-11-21 N/A
The profile-builder plugin before 2.2.5 for WordPress has XSS.
CVE-2015-9327 1 Flickr Justified Gallery Project 1 Flickr Justified Gallery 2024-11-21 N/A
The flickr-justified-gallery plugin before 3.4.0 for WordPress has XSS.
CVE-2015-9326 1 Wpbusinessintelligence 1 Wp Business Intelligence 2024-11-21 N/A
The wp-business-intelligence-lite plugin before 1.6.3 for WordPress has SQL injection.
CVE-2015-9325 1 Bestwebsoft 1 Visitors Online 2024-11-21 N/A
The visitors-online plugin before 0.4 for WordPress has SQL injection.
CVE-2015-9323 1 Duckdev 1 404 To 301 2024-11-21 9.8 Critical
The 404-to-301 plugin before 2.0.3 for WordPress has SQL injection.