Latest CVE Feed
-
9.8
CRITICAL- EPSS Score: %2.77
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
9.4
HIGHCVE-2016-1000112
Unauthenticated remote .jpg file upload in contus-video-comments v1.0 wordpress plugin... Read more
Affected Products : contus-video-comments- EPSS Score: %35.66
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-1000009
TP-LINK lost control of two domains, www.tplinklogin.net and tplinkextender.net. Please note that these domains are physically printed on many of the devices.... Read more
Affected Products : tp-link- EPSS Score: %0.27
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-1000000
Ipswitch WhatsUp Gold 16.4.1 WrFreeFormText.asp sUniqueID Parameter Blind SQL Injection... Read more
- EPSS Score: %0.03
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2015-1000013
Remote file upload vulnerability in wordpress plugin csv2wpec-coupon v1.1... Read more
Affected Products : csv2wpec-coupon- EPSS Score: %6.04
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2015-1000012
Local File Inclusion Vulnerability in mypixs v0.3 wordpress plugin... Read more
Affected Products : mypixs- EPSS Score: %68.58
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2015-1000011
Blind SQL Injection in wordpress plugin dukapress v2.5.9... Read more
- EPSS Score: %6.01
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2015-1000010
Remote file download in simple-image-manipulator v1.0 wordpress plugin... Read more
Affected Products : simple-image-manipulator- EPSS Score: %31.97
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
9.1
CRITICALCVE-2015-1000009
Open proxy in Wordpress plugin google-adsense-and-hotel-booking v1.05... Read more
Affected Products : google-adsense-and-hotel-booking- EPSS Score: %5.70
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
5.3
MEDIUMCVE-2015-1000008
Path Disclosure Vulnerability in wordpress plugin MP3-jPlayer v2.3.2... Read more
Affected Products : mp3-jplayer- EPSS Score: %3.80
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2015-1000007
Remote file download vulnerability in wptf-image-gallery v1.03... Read more
Affected Products : wptf-image-gallery- EPSS Score: %8.88
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2015-1000006
Remote file download vulnerability in recent-backups v0.7 wordpress plugin... Read more
Affected Products : recent-backups- EPSS Score: %10.61
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2015-1000005
Remote file download vulnerability in candidate-application-form v1.0 wordpress plugin... Read more
Affected Products : candidate-application-form- EPSS Score: %21.20
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2015-1000004
XSS in filedownload v1.4 wordpress plugin... Read more
Affected Products : filedownload- EPSS Score: %1.19
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2015-1000003
Blind SQL Injection in filedownload v1.4 wordpress plugin... Read more
Affected Products : filedownload- EPSS Score: %6.01
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
8.2
HIGHCVE-2015-1000002
Open Proxy in filedownload v1.4 wordpress plugin... Read more
Affected Products : filedownload- EPSS Score: %3.09
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2015-1000001
Remote file upload vulnerability in fast-image-adder v1.1 Wordpress plugin... Read more
Affected Products : fast-image-adder- EPSS Score: %7.84
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2015-1000000
Remote file upload vulnerability in mailcwp v1.99 wordpress plugin... Read more
Affected Products : mailcwp- EPSS Score: %10.09
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-6653
The MariaDB audit_plugin component in Pivotal Cloud Foundry (PCF) cf-mysql-release 27 and 28 allows remote attackers to obtain sensitive information by reading syslog messages, as demonstrated by cleartext credentials.... Read more
Affected Products : cloud_foundry_cf_mysql- EPSS Score: %0.30
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2016-6436
Cross-site scripting (XSS) vulnerability in HostScan Engine 3.0.08062 through 3.1.14018 in the Cisco Host Scan package, as used in ASA Web VPN, allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuz14682.... Read more
Affected Products : hostscan_engine- EPSS Score: %0.25
- Published: Oct. 06, 2016
- Modified: Apr. 12, 2025