Latest CVE Feed
-
6.1
MEDIUMCVE-2014-10393
The cforms2 plugin before 10.5 for WordPress has XSS.... Read more
Affected Products : cformsii- EPSS Score: %0.19
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-10392
The cforms2 plugin before 10.2 for WordPress has XSS.... Read more
Affected Products : cformsii- EPSS Score: %0.28
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-10391
The wp-support-plus-responsive-ticket-system plugin before 4.1 for WordPress has JavaScript injection.... Read more
Affected Products : wp_support_plus_responsive_ticket_system- EPSS Score: %0.19
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
9.1
CRITICALCVE-2014-10390
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has directory traversal.... Read more
Affected Products : wp_support_plus_responsive_ticket_system- EPSS Score: %0.52
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-10389
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has incorrect authentication.... Read more
Affected Products : wp_support_plus_responsive_ticket_system- EPSS Score: %0.79
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2014-10388
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has full path disclosure.... Read more
Affected Products : wp_support_plus_responsive_ticket_system- EPSS Score: %0.25
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-10387
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has SQL injection.... Read more
Affected Products : wp_support_plus_responsive_ticket_system- EPSS Score: %0.51
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-10386
The wp-live-chat-support plugin before 4.1.0 for WordPress has JavaScript injections.... Read more
Affected Products : live_chat- EPSS Score: %0.19
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-10385
The memphis-documents-library plugin before 3.0 for WordPress has XSS via $_REQUEST.... Read more
Affected Products : memphis_documents_library- EPSS Score: %0.19
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-10384
The memphis-documents-library plugin before 3.0 for WordPress has Local File Inclusion.... Read more
Affected Products : memphis_documents_library- EPSS Score: %0.91
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-10383
The memphis-documents-library plugin before 3.0 for WordPress has Remote File Inclusion.... Read more
Affected Products : memphis_documents_library- EPSS Score: %1.55
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2014-10382
The feature-comments plugin before 1.2.5 for WordPress has CSRF for featuring or burying a comment.... Read more
Affected Products : featured_comments- EPSS Score: %0.10
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2014-10381
The user-domain-whitelist plugin before 1.5 for WordPress has CSRF.... Read more
Affected Products : user_domain_whitelist- EPSS Score: %0.11
- Published: Aug. 20, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-10380
The profile-builder plugin before 1.1.66 for WordPress has multiple XSS issues in forms.... Read more
Affected Products : profile_builder- EPSS Score: %0.19
- Published: Aug. 21, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-10379
The duplicate-post plugin before 2.6 for WordPress has SQL injection.... Read more
Affected Products : duplicate_post- EPSS Score: %0.51
- Published: Aug. 21, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-10378
The duplicate-post plugin before 2.6 for WordPress has XSS.... Read more
Affected Products : duplicate_post- EPSS Score: %0.19
- Published: Aug. 21, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2014-10377
The cforms2 plugin before 13.2 for WordPress has XSS in lib_ajax.php.... Read more
Affected Products : cformsii- EPSS Score: %0.19
- Published: Aug. 21, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2014-10376
The i-recommend-this plugin before 3.7.3 for WordPress has SQL injection.... Read more
Affected Products : i_recommend_this- EPSS Score: %0.48
- Published: Aug. 16, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2014-10375
handle_messages in eXtl_tls.c in eXosip before 5.0.0 mishandles a negative value in a content-length header.... Read more
Affected Products : exosip- EPSS Score: %0.35
- Published: Aug. 14, 2019
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2014-10374
On Fitbit activity-tracker devices, certain addresses never change. According to the popets-2019-0036.pdf document, this leads to "permanent trackability" and "considerable privacy concerns" without a user-accessible anonymization feature. The devices, su... Read more
- EPSS Score: %0.18
- Published: Jul. 15, 2019
- Modified: Nov. 21, 2024