gowebsolutions records
7 published records for vendor gowebsolutions.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 14.3%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
- CWE-862 Missing Authorization1
The weakness classes this vendor ships most often: where to look.
CWEAll records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2016-10902No exploit | The wp-customer-reviews plugin before 3.0.9 for WordPress has CSRF in the admin tools.gowebsolutions · wp customer reviews · CWE-352 | High8.8 | — | 0.7% | Aug 21, 2019 |
24Monitor | CVE-2021-24135No exploit | WP Customer Reviews < 3.4.3 - Multiple Unauthenticated and Low Priv Authenticated Stored XSSgowebsolutions · wp customer reviews · CWE-79 | Medium6.1 | — | 1.1% | Mar 18, 2021 |
24Monitor | CVE-2016-10901No exploit | The wp-customer-reviews plugin before 3.0.9 for WordPress has XSS in the admin tools.gowebsolutions · wp customer reviews · CWE-79 | Medium6.1 | — | 0.9% | Aug 21, 2019 |
21Monitor | CVE-2024-1849No exploit | WP Customer Reviews < 3.7.1 - Malicious Redirect via HTTP-EQUIV Injectiongowebsolutions · wp customer reviews · CWE-601 | Medium5.4 | — | 0.5% | Apr 15, 2024 |
19Monitor | CVE-2021-24296No exploit | WP Customer Reviews < 3.5.6 - Authenticated Stored Cross-Site Scripting (XSS)gowebsolutions · wp customer reviews · CWE-79 | Medium4.8 | — | 0.6% | May 24, 2021 |
19Monitor | CVE-2023-4648No exploit | WP Customer Reviews <= 3.6.6 - Authenticated (Administrator+) Stored Cross-Site Scriptinggowebsolutions · wp customer reviews · CWE-79 | Medium4.8 | — | 0.4% | Oct 20, 2023 |
17Monitor | CVE-2023-4686No exploit | WP Customer Reviews <= 3.6.6 - Authenticated (Subscriber+) Sensitive Information Exposuregowebsolutions · wp customer reviews · CWE-862 | Medium4.3 | — | 0.5% | Nov 22, 2023 |
- CVE-2016-1090235Monitor
The wp-customer-reviews plugin before 3.0.9 for WordPress has CSRF in the admin tools.
HighCVSS 8.8No exploitEPSS 1%gowebsolutions · wp customer reviewsAug 21, 2019
- CVE-2021-2413524Monitor
WP Customer Reviews < 3.4.3 - Multiple Unauthenticated and Low Priv Authenticated Stored XSS
MediumCVSS 6.1No exploitEPSS 1%gowebsolutions · wp customer reviewsMar 18, 2021
- CVE-2016-1090124Monitor
The wp-customer-reviews plugin before 3.0.9 for WordPress has XSS in the admin tools.
MediumCVSS 6.1No exploitEPSS 1%gowebsolutions · wp customer reviewsAug 21, 2019
- CVE-2024-184921Monitor
WP Customer Reviews < 3.7.1 - Malicious Redirect via HTTP-EQUIV Injection
MediumCVSS 5.4No exploitEPSS 0%gowebsolutions · wp customer reviewsApr 15, 2024
- CVE-2021-2429619Monitor
WP Customer Reviews < 3.5.6 - Authenticated Stored Cross-Site Scripting (XSS)
MediumCVSS 4.8No exploitEPSS 1%gowebsolutions · wp customer reviewsMay 24, 2021
- CVE-2023-464819Monitor
WP Customer Reviews <= 3.6.6 - Authenticated (Administrator+) Stored Cross-Site Scripting
MediumCVSS 4.8No exploitEPSS 0%gowebsolutions · wp customer reviewsOct 20, 2023
- CVE-2023-468617Monitor
WP Customer Reviews <= 3.6.6 - Authenticated (Subscriber+) Sensitive Information Exposure
MediumCVSS 4.3No exploitEPSS 1%gowebsolutions · wp customer reviewsNov 22, 2023