Aggregator
Threat Attack Daily - 27th of March 2025
1 year ago
Threat Attack Daily - 27th of March 2025
Dark Web Informer - Cyber Threat Intelligence
享受黑暗
1 year ago
喜欢独坐在黑暗中,凝视着前方的虚空
享受黑暗
1 year ago
喜欢独坐在黑暗中,凝视着前方的虚空
享受黑暗
1 year ago
喜欢独坐在黑暗中,凝视着前方的虚空
享受黑暗
1 year ago
喜欢独坐在黑暗中,凝视着前方的虚空
CVE-2022-4835 | Social Sharing Toolkit Plugin up to 2.6 on WordPress Shortcode cross site scripting
1 year ago
A vulnerability classified as problematic was found in Social Sharing Toolkit Plugin up to 2.6 on WordPress. Affected by this vulnerability is an unknown functionality of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2022-4835. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2022-4834 | CPT Bootstrap Carousel up to 1.12 on WordPress Shortcode cross site scripting
1 year ago
A vulnerability, which was classified as problematic, was found in CPT Bootstrap Carousel up to 1.12 on WordPress. Affected is an unknown function of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2022-4834. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2023-0097 | Post Grid, Post Carousel, & List Category Posts Plugin Shortcode cross site scripting
1 year ago
A vulnerability was found in Post Grid, Post Carousel, & List Category Posts Plugin up to 2.4.18 on WordPress. It has been rated as problematic. This issue affects some unknown processing of the component Shortcode Handler. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2023-0097. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-4837 | CPO Companion Plugin up to 1.0.4 on WordPress Shortcode cross site scripting
1 year ago
A vulnerability classified as problematic has been found in CPO Companion Plugin up to 1.0.4 on WordPress. Affected is an unknown function of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2022-4837. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-0074 | WP Social Widget Plugin up to 2.2.3 on WordPress Shortcode cross site scripting
1 year ago
A vulnerability classified as problematic was found in WP Social Widget Plugin up to 2.2.3 on WordPress. Affected by this vulnerability is an unknown functionality of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2023-0074. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-0071 | WP Tabs Plugin up to 2.1.16 on WordPress Shortcode cross site scripting
1 year ago
A vulnerability, which was classified as problematic, has been found in WP Tabs Plugin up to 2.1.16 on WordPress. Affected by this issue is some unknown functionality of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2023-0071. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-24829 | Apache IoTDB 0.13.0/0.13.1/0.13.2 iotdb-web-workbench authorization
1 year ago
A vulnerability classified as problematic was found in Apache IoTDB 0.13.0/0.13.1/0.13.2. This vulnerability affects unknown code of the component iotdb-web-workbench. The manipulation leads to incorrect authorization.
This vulnerability was named CVE-2023-24829. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-4872 | Chained Products Plugin up to 2.11.x on WordPress cross-site request forgery
1 year ago
A vulnerability, which was classified as problematic, was found in Chained Products Plugin up to 2.11.x on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2022-4872. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-21129 | nemo-appium 0.0.9 module.exports.setup command injection
1 year ago
A vulnerability, which was classified as critical, was found in nemo-appium 0.0.9. This affects the function module.exports.setup. The manipulation leads to command injection.
This vulnerability is uniquely identified as CVE-2022-21129. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2022-30421 | Toshiba Storage Security Software 1.2.0.7413 Password Module information disclosure (GHSA-px7r-44vj-8h7m)
1 year ago
A vulnerability classified as problematic has been found in Toshiba Storage Security Software 1.2.0.7413. This affects an unknown part of the component Password Module. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2022-30421. The attack needs to be approached locally. There is no exploit available.
vuldb.com
CVE-2022-25979 | jsuites up to 5.0.0 Editor cross site scripting (Issue 134)
1 year ago
A vulnerability, which was classified as problematic, has been found in jsuites up to 5.0.0. Affected by this issue is the function Committer. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2022-25979. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-47035 | D-Link DIR-825 up to 1.33.0.44ebdd4-embedded /CPE GetConfig buffer overflow
1 year ago
A vulnerability has been found in D-Link DIR-825 up to 1.33.0.44ebdd4-embedded and classified as critical. This vulnerability affects the function GetConfig of the file /CPE. The manipulation leads to buffer overflow.
This vulnerability was named CVE-2022-47035. The attack needs to be approached within the local network. There is no exploit available.
vuldb.com
CVE-2020-20402 | Westbrookadmin portfolioCMS 1.05 Password Validation session fixiation
1 year ago
A vulnerability was found in Westbrookadmin portfolioCMS 1.05. It has been rated as critical. Affected by this issue is some unknown functionality of the component Password Validation Handler. The manipulation leads to session fixiation.
This vulnerability is handled as CVE-2020-20402. The attack needs to be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2022-4699 | MediaElement.js Plugin up to 4.2.8 on WordPress Shortcode cross site scripting
1 year ago
A vulnerability, which was classified as problematic, has been found in MediaElement.js Plugin up to 4.2.8 on WordPress. This issue affects some unknown processing of the component Shortcode Handler. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2022-4699. The attack may be initiated remotely. There is no exploit available.
vuldb.com