Skip to content
Noroxi

Total-Soft records

10 published records for vendor total-soft.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
20%
Median publish → KEV
No record has entered KEV

All records

10 records
  • An issue was discovered in the Responsive Poll through 1.3.4 for Wordpress.

    CriticalCVSS 9.8No exploitEPSS 4%

    total-soft · responsive pollApr 13, 2020

  • WordPress Video Gallery – YouTube Gallery Plugin <= 2.1.3 is vulnerable to SQL Injection

    CriticalCVSS 9.8No exploitEPSS 1%

    total-soft · video galleryNov 6, 2023

  • CVE-2024-8700
    30Monitor

    Event Calendar <= 1.0.4 - Unauthenticated Arbitrary Calendar Deletion

    HighCVSS 7.5No exploitEPSS 0%

    total-soft · event calendarMay 15, 2025

  • CVE-2024-8625
    29Monitor

    TS Poll – Survey, Versus Poll, Image Poll, Video Poll < 2.4.0 - Admin+ SQL Injection

    HighCVSS 7.2Proof of conceptEPSS 2%

    total-soft · ts pollOct 21, 2024

  • CVE-2024-9022
    28Monitor

    TS Poll – Survey, Versus Poll, Image Poll, Video Poll <= 2.4.0 - Authenticated (Administrator+) SQL Injection via orderby Parameter

    HighCVSS 7.2No exploitEPSS 1%

    total-soft · ts pollOct 9, 2024

  • WordPress Event Calendar – Calendar plugin <= 1.4.6 - Unauthenticated Event Deletion vulnerability

    MediumCVSS 5.3No exploitEPSS 1%

    total-soft · event calendarSep 9, 2022

  • WordPress Event Calendar – Calendar plugin <= 1.4.6 - Authenticated Reflected Cross-Site Scripting (XSS) vulnerability

    MediumCVSS 5.4No exploitEPSS 1%

    total-soft · event calendarSep 21, 2022

  • YouTube Gallery and Vimeo Gallery Plugin <= 2.4.2 - Authenticated (Administrator+) SQL Injection

    MediumCVSS 4.9No exploitEPSS 1%

    total-soft · video galleryDec 6, 2024

  • WordPress Video Gallery – YouTube Gallery Plugin <= 1.7.6 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 4.8No exploitEPSS 0%

    total-soft · video galleryMay 3, 2023

  • CVE-2024-9769
    19Monitor

    Video Gallery <= 2.4.1 - Authenticated (Administrator+) Stored Cross-Site Scripting

    MediumCVSS 4.8No exploitEPSS 0%

    total-soft · video galleryDec 6, 2024