Total
299253 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2015-9331 | 1 Soflyy | 1 Wp All Import | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
The wp-all-import plugin before 3.2.4 for WordPress has no prevention of unauthenticated requests to adminInit. | |||||
CVE-2015-9330 | 1 Soflyy | 1 Wp All Import | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
The wp-all-import plugin before 3.2.5 for WordPress has blind SQL injection. | |||||
CVE-2015-9329 | 1 Soflyy | 1 Wp All Import | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The wp-all-import plugin before 3.2.5 for WordPress has reflected XSS. | |||||
CVE-2015-9328 | 1 Cozmoslabs | 1 Profile Builder | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The profile-builder plugin before 2.2.5 for WordPress has XSS. | |||||
CVE-2015-9327 | 1 Flickr Justified Gallery Project | 1 Flickr Justified Gallery | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The flickr-justified-gallery plugin before 3.4.0 for WordPress has XSS. | |||||
CVE-2015-9326 | 1 Wpbusinessintelligence | 1 Wp Business Intelligence | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
The wp-business-intelligence-lite plugin before 1.6.3 for WordPress has SQL injection. | |||||
CVE-2015-9325 | 1 Bestwebsoft | 1 Visitors Online | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
The visitors-online plugin before 0.4 for WordPress has SQL injection. | |||||
CVE-2015-9323 | 1 Duckdev | 1 404 To 301 | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
The 404-to-301 plugin before 2.0.3 for WordPress has SQL injection. | |||||
CVE-2015-9322 | 1 Erident Custom Login And Dashboard Project | 1 Erident Custom Login And Dashboard | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The erident-custom-login-and-dashboard plugin before 3.5 for WordPress has CSRF. | |||||
CVE-2015-9321 | 1 Wpmadeeasy | 1 Shortcode Factory | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The shortcode-factory plugin before 1.1.1 for WordPress has XSS via add_query_arg. | |||||
CVE-2015-9320 | 1 Optiontree Project | 1 Optiontree | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The option-tree plugin before 2.5.4 for WordPress has XSS related to add_query_arg. | |||||
CVE-2015-9319 | 1 Greg\'s High Performance Seo Project | 1 Greg\'s High Performance Seo | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The gregs-high-performance-seo plugin before 1.6.2 for WordPress has XSS in the context of an old browser. | |||||
CVE-2015-9318 | 1 Getawesomesupport | 1 Awesome Support | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
The awesome-support plugin before 3.1.7 for WordPress has a security issue in which shortcodes are allowed in replies. | |||||
CVE-2015-9317 | 1 Getawesomesupport | 1 Awesome Support | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The awesome-support plugin before 3.1.7 for WordPress has XSS via custom information messages. | |||||
CVE-2015-9316 | 1 Wpfastestcache | 1 Wp Fastest Cache | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
The wp-fastest-cache plugin before 0.8.4.9 for WordPress has SQL injection in wp-admin/admin-ajax.php?action=wpfc_wppolls_ajax_request via the poll_id parameter. | |||||
CVE-2015-9315 | 1 Newstatpress Project | 1 Newstatpress | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
The newstatpress plugin before 1.0.1 for WordPress has SQL injection. | |||||
CVE-2015-9314 | 1 Newstatpress Project | 1 Newstatpress | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The newstatpress plugin before 1.0.4 for WordPress has XSS related to the Referer header. | |||||
CVE-2015-9313 | 1 Newstatpress Project | 1 Newstatpress | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
The newstatpress plugin before 1.0.5 for WordPress has SQL injection related to an IMG element. | |||||
CVE-2015-9312 | 1 Newstatpress Project | 1 Newstatpress | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The newstatpress plugin before 1.0.5 for WordPress has XSS related to an IMG element. | |||||
CVE-2015-9311 | 1 Newstatpress Project | 1 Newstatpress | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
The newstatpress plugin before 1.0.6 for WordPress has reflected XSS. |