Filtered by vendor Cardozatechnologies Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-41990 1 Cardozatechnologies 1 Cardoza-3d-tag-cloud 2024-11-21 7.1 High
Cross-Site Request Forgery (CSRF) vulnerability in Vinoj Cardoza 3D Tag Cloud allows Stored XSS.This issue affects 3D Tag Cloud: from n/a through 3.8.
CVE-2013-1401 1 Cardozatechnologies 1 Wordpress Poll 2024-11-21 9.8 Critical
Multiple security bypass vulnerabilities in the editAnswer, deleteAnswer, addAnswer, and deletePoll functions in WordPress Poll Plugin 34.5 for WordPress allow a remote attacker to add, edit, and delete an answer and delete a poll.
CVE-2013-1400 1 Cardozatechnologies 1 Wordpress Poll 2024-11-21 9.8 Critical
Multiple SQL injection vulnerabilities in CWPPoll.js in WordPress Poll Plugin 34.5 for WordPress allow attackers to execute arbitrary SQL commands via the pollid or poll_id parameter in a viewPollResults or userlogs action.