Filtered by vendor Wptaskforce Subscriptions
Filtered by product Wpcargo Track \& Trace Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-25003 1 Wptaskforce 1 Wpcargo Track \& Trace 2024-11-21 9.8 Critical
The WPCargo Track & Trace WordPress plugin before 6.9.0 contains a file which could allow unauthenticated attackers to write a PHP file anywhere on the web server, leading to RCE
CVE-2024-44004 1 Wptaskforce 2 Track \& Trace, Wpcargo Track \& Trace 2024-09-24 9.3 Critical
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPTaskForce WPCargo Track & Trace allows SQL Injection.This issue affects WPCargo Track & Trace: from n/a through 7.0.6.