Latest CVE Feed
-
9.8
CRITICALCVE-2014-125099
A vulnerability has been found in I Recommend This Plugin up to 3.7.2 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality of the file dot-irecommendthis.php. The manipulation leads to sql injection. The atta... Read more
Affected Products : i_recommend_this- EPSS Score: %0.10
- Published: Apr. 20, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-125098
A vulnerability was found in Dart http_server up to 0.9.5 and classified as problematic. Affected by this issue is the function VirtualDirectory of the file lib/src/virtual_directory.dart of the component Directory Listing Handler. The manipulation of the... Read more
Affected Products : http_server- EPSS Score: %0.07
- Published: Apr. 10, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-125097
A vulnerability, which was classified as problematic, was found in BestWebSoft Facebook Like Button up to 2.33. Affected is the function fcbkbttn_settings_page of the file facebook-button-plugin.php. The manipulation leads to cross site scripting. It is p... Read more
Affected Products : facebook_button- EPSS Score: %0.06
- Published: Apr. 10, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-125096
A vulnerability was found in Fancy Gallery Plugin 1.5.12 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file class.options.php of the component Options Page. The manipulation leads to c... Read more
Affected Products : fancy_gallery- EPSS Score: %0.09
- Published: Apr. 10, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-125095
A vulnerability was found in BestWebSoft Contact Form Plugin 1.3.4 on WordPress and classified as problematic. Affected by this issue is the function bws_add_menu_render of the file bws_menu/bws_menu.php. The manipulation of the argument bwsmn_form_email ... Read more
Affected Products : contact_form- EPSS Score: %0.08
- Published: Apr. 09, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-125094
A vulnerability classified as problematic was found in phpMiniAdmin up to 1.8.120510. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting. The attack can be launched remotely. Upgrading to version 1.9... Read more
Affected Products : phpminiadmin- EPSS Score: %0.06
- Published: Apr. 06, 2023
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2014-125093
A vulnerability has been found in Ad Blocking Detector Plugin up to 1.2.1 on WordPress and classified as problematic. This vulnerability affects unknown code of the file ad-blocking-detector.php. The manipulation leads to information disclosure. The attac... Read more
Affected Products : ad_blocking_detector- EPSS Score: %0.26
- Published: Mar. 10, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-125092
A vulnerability was found in MaxButtons Plugin up to 1.26.0 on WordPress and classified as problematic. This issue affects the function maxbuttons_strip_px of the file includes/maxbuttons-button.php. The manipulation of the argument button_id leads to cro... Read more
Affected Products : maxbuttons- EPSS Score: %0.07
- Published: Mar. 05, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-125091
A vulnerability has been found in codepeople cp-polls Plugin 1.0.1 on WordPress and classified as critical. This vulnerability affects unknown code of the file cp-admin-int-message-list.inc.php. The manipulation of the argument lu leads to sql injection. ... Read more
Affected Products : polls_cp- EPSS Score: %0.10
- Published: Mar. 04, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-125090
A vulnerability was found in Media Downloader Plugin 0.1.992 on WordPress. It has been declared as problematic. This vulnerability affects the function dl_file_resumable of the file getfile.php. The manipulation of the argument file leads to cross site sc... Read more
Affected Products : media_downloader- EPSS Score: %0.08
- Published: Mar. 04, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-125089
A vulnerability was found in cention-chatserver 3.8.0-rc1. It has been declared as problematic. Affected by this vulnerability is the function _formatBody of the file lib/InternalChatProtocol.fe. The manipulation of the argument body leads to cross site s... Read more
Affected Products : cention-chatserver- EPSS Score: %0.06
- Published: Feb. 21, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-125088
A vulnerability was found in qt-users-jp silk 0.0.1. It has been declared as problematic. This vulnerability affects unknown code of the file contents/root/examples/header.qml. The manipulation of the argument model.key/model.value leads to cross site scr... Read more
Affected Products : silk- EPSS Score: %0.06
- Published: Feb. 20, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-125087
A vulnerability was found in java-xmlbuilder up to 1.1. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to xml external entity reference. Upgrading to version 1.2 is able to address this issue... Read more
Affected Products : java-xmlbuilder- EPSS Score: %0.08
- Published: Feb. 19, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-125086
A vulnerability has been found in Gimmie Plugin 1.2.2 on vBulletin and classified as critical. Affected by this vulnerability is an unknown functionality of the file trigger_login.php. The manipulation of the argument userid leads to sql injection. Upgrad... Read more
Affected Products : gimmie- EPSS Score: %0.05
- Published: Feb. 06, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-125085
A vulnerability, which was classified as critical, was found in Gimmie Plugin 1.2.2 on vBulletin. Affected is an unknown function of the file trigger_ratethread.php. The manipulation of the argument t/postusername leads to sql injection. Upgrading to vers... Read more
Affected Products : gimmie- EPSS Score: %0.05
- Published: Feb. 06, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-125084
A vulnerability, which was classified as critical, has been found in Gimmie Plugin 1.2.2 on vBulletin. This issue affects some unknown processing of the file trigger_referral.php. The manipulation of the argument referrername leads to sql injection. Upgra... Read more
Affected Products : gimmie- EPSS Score: %0.05
- Published: Feb. 06, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-125083
A vulnerability has been found in Anant Labs google-enterprise-connector-dctm up to 3.2.3 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument username/domain leads to sql injection. The ... Read more
Affected Products : google-enterprise-connector-dctm- EPSS Score: %0.04
- Published: Jan. 19, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-125082
A vulnerability was found in nivit redports. It has been declared as critical. This vulnerability affects unknown code of the file redports-trac/redports/model.py. The manipulation leads to sql injection. The name of the patch is fc2c1ea1b8d795094abb15ac7... Read more
Affected Products : redports- EPSS Score: %0.06
- Published: Jan. 18, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-125081
A vulnerability, which was classified as critical, has been found in risheesh debutsav. This issue affects some unknown processing. The manipulation leads to sql injection. The patch is named 7a8430df79277c613449262201cc792db894fc76. It is recommended to ... Read more
Affected Products : debutsav- EPSS Score: %0.04
- Published: Jan. 17, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-125080
A vulnerability has been found in frontaccounting faplanet and classified as critical. This vulnerability affects unknown code. The manipulation leads to path traversal. The patch is identified as a5dcd87f46080a624b1a9ad4b0dd035bbd24ac50. It is recommende... Read more
Affected Products : faplanet- EPSS Score: %0.09
- Published: Jan. 16, 2023
- Modified: Nov. 21, 2024