A vulnerability, which was classified as problematic, was found in WP Post Columns Plugin up to 2.2 on WordPress. Affected is an unknown function of the component Shortcode Handler. Executing a manipulation can lead to cross site scripting.
The identification of this vulnerability is CVE-2023-5708. The attack may be launched remotely. There is no exploit available.
A vulnerability identified as problematic has been detected in VK Blocks Plugin up to 1.63.0.1 on WordPress. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2023-5706. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability has been found in News & Blog Designer Pack Plugin up to 3.4.1 on WordPress and classified as critical. The impacted element is an unknown function. The manipulation leads to file inclusion.
This vulnerability is documented as CVE-2023-5815. The attack can be initiated remotely. There is not any exploit available.
A vulnerability, which was classified as critical, was found in Drag and Drop Multiple File Upload Contact Form 7 up to 1.3.7.3 on WordPress. Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to unrestricted upload.
This vulnerability appears as CVE-2023-5822. The attack may be performed from remote. There is no available exploit.
A vulnerability classified as problematic was found in EasyRotator Plugin up to 1.0.14 on WordPress. The affected element is an unknown function of the component Shortcode Handler. Such manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2023-5742. The attack can be launched remotely. No exploit exists.
A vulnerability was found in Website Optimization Plerdy Plugin up to 1.3.2 on WordPress. It has been rated as problematic. Affected is an unknown function. This manipulation causes cross site scripting.
This vulnerability is tracked as CVE-2023-5715. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability, which was classified as critical, has been found in UserPro Plugin up to 5.1.1 on WordPress. This impacts an unknown function. Performing a manipulation results in missing authorization.
This vulnerability is known as CVE-2023-6007. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability, which was classified as critical, was found in UserPro Plugin up to 5.1.4 on WordPress. Affected is an unknown function. Executing a manipulation can lead to incorrect privilege assignment.
This vulnerability is handled as CVE-2023-6009. The attack can be executed remotely. There is not any exploit available.
A vulnerability, which was classified as problematic, was found in UserPro Plugin up to 5.1.1 on WordPress. This affects an unknown function. Executing a manipulation can lead to cross-site request forgery.
This vulnerability appears as CVE-2023-6008. The attack may be performed from remote. There is no available exploit.
A vulnerability labeled as critical has been found in chrisbadgett LifterLMS Plugin up to 7.4.2 on WordPress. Affected by this vulnerability is the function maybe_serve_export. Executing a manipulation can lead to path traversal.
The identification of this vulnerability is CVE-2023-6160. The attack may be launched remotely. There is no exploit available.
It is advisable to implement a patch to correct this issue.
A vulnerability marked as problematic has been reported in MainWP Manager for Multiple Websites Maintenance Plugin up to 4.5.1.2 on WordPress. Affected by this issue is some unknown functionality. The manipulation of the argument newColor leads to improper neutralization.
This vulnerability is referenced as CVE-2023-6164. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability, which was classified as problematic, was found in BookingPress Plugin up to 1.0.76 on WordPress. The affected element is an unknown function. Such manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2023-6219. The attack may be launched remotely. There is no exploit available.
A vulnerability identified as problematic has been detected in WP Shortcodes Plugin up to 5.13.3 on WordPress. Affected by this vulnerability is an unknown functionality. Performing a manipulation results in cross site scripting.
This vulnerability was named CVE-2023-6225. The attack may be initiated remotely. There is no available exploit.
A vulnerability labeled as problematic has been found in WP Shortcodes Plugin up to 5.13.3 on WordPress. Affected by this issue is some unknown functionality. Executing a manipulation can lead to improper control of resource identifiers.
The identification of this vulnerability is CVE-2023-6226. The attack may be launched remotely. There is no exploit available.
A vulnerability has been found in Totolink A7100RU 7.4cu.2313_b20191024 and classified as critical. This vulnerability affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. The manipulation of the argument ip leads to os command injection.
This vulnerability is referenced as CVE-2026-6116. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
A vulnerability, which was classified as critical, was found in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setAppCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Executing a manipulation of the argument enable can lead to os command injection.
The identification of this vulnerability is CVE-2026-6115. The attack may be launched remotely. Furthermore, there is an exploit available.