Skip to content
Noroxi

Dev4Press records

12 published records for vendor dev4press.

All records

12 records
  • CVE-2024-0852
    35Monitor

    coreActivity < 1.8.1 - Unauthenticated Stored XSS

    HighCVSS 8.8No exploitEPSS 1%

    dev4press · coreactivityMay 15, 2025

  • CVE-2014-2839
    30Monitor

    SQL injection vulnerability in the GD Star Rating plugin 19.22 for WordPress allows remote administrators to execute arbitrary SQL commands

    HighCVSS 7.5No exploitEPSS 2%

    dev4press · gd star ratingJan 12, 2015

  • WordPress GD Security Headers Plugin <= 1.7 is vulnerable to SQL Injection

    HighCVSS 7.2No exploitEPSS 1%

    dev4press · gd security headersNov 6, 2023

  • CVE-2014-2838
    27Monitor

    Multiple cross-site request forgery (CSRF) vulnerabilities in the GD Star Rating plugin 19.22 for WordPress allow remote attackers to hijack

    MediumCVSS 6.8No exploitEPSS 1%

    dev4press · gd star ratingJan 12, 2015

  • The gd-rating-system plugin before 2.1 for WordPress has XSS in log.php.

    MediumCVSS 6.1No exploitEPSS 1%

    dev4press · gd rating systemAug 27, 2019

  • CVE-2023-3122
    24Monitor

    GD Mail Queue <= 3.9.3 - Unauthenticated Stored Cross-Site Scripting via Email

    MediumCVSS 6.1No exploitEPSS 0%

    dev4press · gd mail queueJul 12, 2023

  • WordPress GD Rating System Plugin <= 3.5 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 6.1No exploitEPSS 0%

    dev4press · gd rating systemFeb 29, 2024

  • WordPress GD Security Headers Plugin <= 1.6.1 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 6.1No exploitEPSS 0%

    dev4press · gd security headersSep 27, 2023

  • CVE-2024-0868
    21Monitor

    coreActivity < 2.1 - Unauthenticated IP Spoofing

    MediumCVSS 5.3No exploitEPSS 0%

    dev4press · coreactivityApr 17, 2024

  • WordPress GD bbPress Attachments Plugin <= 4.3.1 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 5.4No exploitEPSS 0%

    dev4press · gd bbpress attachmentsDec 6, 2022

  • CVE-2015-5481
    18Monitor

    Cross-site scripting (XSS) vulnerability in forms/panels.php in the GD bbPress Attachments plugin before 2.3 for WordPress allows remote att

    MediumCVSS 4.3No exploitEPSS 2%

    dev4press · gd bbpress attachmentsAug 18, 2015

  • CVE-2015-5482
    17Monitor

    Directory traversal vulnerability in the GD bbPress Attachments plugin before 2.3 for WordPress allows remote administrators to include and

    MediumCVSS 4.0No exploitEPSS 2%

    dev4press · gd bbpress attachmentsAug 18, 2015