Skip to content
Noroxi

dwbooster records

18 published records for vendor dwbooster.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
5.6%
Median publish → KEV
No record has entered KEV

All records

18 records
  • CP Image Store with Slideshow < 1.0.68 - Unauthenticated SQLi

    CriticalCVSS 9.8Proof of conceptEPSS 11%

    dwbooster · cp image store with slideshowJun 8, 2022

  • WordPress Appointment Hour Booking plugin <= 1.3.71 - Missing Authorization vulnerability

    HighCVSS 8.8No exploitEPSS 1%

    dwbooster · appointment hour bookingNov 18, 2022

  • WordPress CP Blocks Plugin <= 1.0.20 is vulnerable to Cross Site Request Forgery (CSRF)

    HighCVSS 8.8No exploitEPSS 0%

    dwbooster · cp blocksOct 6, 2023

  • CVE-2022-4034
    31Monitor

    Appointment Hour Booking <= 1.3.72 - CSV Injection

    HighCVSS 7.8No exploitEPSS 1%

    dwbooster · appointment hour bookingNov 29, 2022

  • CVE-2022-3427
    26Monitor

    Corner Ad <= 1.0.56 - Cross-Site Request Forgery

    MediumCVSS 6.5No exploitEPSS 1%

    dwbooster · corner adDec 15, 2022

  • CP Contact Form with PayPal <= 1.3.52 - Cross-Site Request Forgery

    MediumCVSS 6.5No exploitEPSS 0%

    dwbooster · cp contact formJan 30, 2025

  • Calendar Event Multi View < 1.4.01 - Unauthenticated Reflected Cross-Site Scripting (XSS)

    MediumCVSS 6.1Proof of conceptEPSS 4%

    dwbooster · calendar event multi viewAug 2, 2021

  • The Appointment Hour Booking plugin 1.1.44 for WordPress allows XSS via the E-mail field, as demonstrated by email_1.

    MediumCVSS 6.1No exploitEPSS 1%

    dwbooster · appointment hour bookingJul 11, 2019

  • The corner-ad plugin before 1.0.8 for WordPress has XSS.

    MediumCVSS 6.1No exploitEPSS 1%

    dwbooster · corner adAug 22, 2019

  • CVE-2022-4035
    24Monitor

    Appointment Hour Booking <= 1.3.72 - Unauthenticated iFrame Injection via Appointment Form

    MediumCVSS 6.1No exploitEPSS 1%

    dwbooster · appointment hour bookingNov 29, 2022

  • CVE-2022-0448
    21Monitor

    CP Blocks < 1.0.15 - Admin+ Stored Cross-Site Scripting

    MediumCVSS 4.8Proof of conceptEPSS 6%

    dwbooster · cp blocksMar 7, 2022

  • Appointment Hour Booking – WordPress Booking Plugin < 1.3.17 - Authenticated Stored XSS

    MediumCVSS 5.4No exploitEPSS 1%

    dwbooster · appointment hour bookingOct 11, 2021

  • CVE-2022-4036
    21Monitor

    Appointment Hour Booking <= 1.3.72 - CAPTCHA Bypass

    MediumCVSS 5.3No exploitEPSS 0%

    dwbooster · appointment hour bookingNov 29, 2022

  • Appointment Hour Booking < 1.3.16 - Authenticated Stored Cross-Site Scripting

    MediumCVSS 4.8No exploitEPSS 1%

    dwbooster · appointment hour bookingOct 4, 2021

  • CVE-2022-1710
    19Monitor

    Appointment Hour Booking < 1.3.56 - Admin+ Stored Cross-Site Scripting

    MediumCVSS 4.8No exploitEPSS 1%

    dwbooster · appointment hour bookingJun 13, 2022

  • CVE-2022-2169
    19Monitor

    Loading Page with Loading Screen < 1.0.83 - Admin+ Stored Cross-Site Scripting

    MediumCVSS 4.8No exploitEPSS 1%

    dwbooster · loading page with loading screenJul 17, 2022

  • CVE-2023-6446
    19Monitor

    Calculated Fields Form <= 1.2.40 - Authenticated (Admin+) Stored Cross-Site Scripting

    MediumCVSS 4.8No exploitEPSS 0%

    dwbooster · calculated fields formJan 11, 2024

  • CVE-2022-2846
    18Monitor

    Calendar Event Multi View < 1.4.07 - Unauthenticated Arbitrary Event Creation to Stored XSS

    MediumCVSS 4.3Proof of conceptEPSS 3%

    dwbooster · calendar event multi viewAug 16, 2022