İçeriğe atla
Noroxi

codection kayıtları

codection üreticisine ait 18 yayımlanmış kayıt.

Tüm kayıtlar

18 kayıt
  • CVE-2024-8252
    36İzleyin

    Clean Login <= 1.14.5 - Authenticated (Contributor+) Local File Inclusion

    YüksekCVSS 8,8Kavram kanıtıEPSS %3

    codection · clean login30 Ağu 2024

  • CVE-2019-15329
    35İzleyin

    The import-users-from-csv-with-meta plugin before 1.14.0.3 for WordPress has CSRF.

    YüksekCVSS 8,8İstismar yokEPSS %1

    codection · import users from csv with meta22 Ağu 2019

  • CVE-2020-22277
    33İzleyin

    Import and export users and customers WordPress Plugin through 1.15.5.11 allows CSV injection via a customer's profile.

    YüksekCVSS 8,0İstismar yokEPSS %2

    codection · import and export users and customers4 Kas 2020

  • CVE-2022-3558
    32İzleyin

    Import and export users and customers < 1.20.5 - Subscriber+ CSV Injection

    YüksekCVSS 8,0İstismar yokEPSS %1

    codection · import and export users and customers7 Kas 2022

  • CVE-2019-15326
    31İzleyin

    The import-users-from-csv-with-meta plugin before 1.14.2.1 for WordPress has directory traversal.

    YüksekCVSS 7,5İstismar yokEPSS %2

    codection · import users from csv with meta22 Ağu 2019

  • CVE-2024-38787
    30İzleyin

    WordPress Import and export users and customers plugin <= 1.26.8 - Sensitive Information via Imported File vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %0

    javier carazo · import and export users and customers13 Ağu 2024

  • CVE-2023-6583
    28İzleyin

    Import and export users and customers <= 1.24.2 - Authenticated(Administrator+) Directory Traversal via Recurring Import Functionality

    YüksekCVSS 7,2İstismar yokEPSS %1

    codection · import and export users and customers11 Oca 2024

  • CVE-2017-8875
    26İzleyin

    CSRF in the Clean Login plugin before 1.8 for WordPress allows remote attackers to change the login redirect URL or logout redirect URL.

    OrtaCVSS 6,5İstismar yokEPSS %1

    codection · clean login10 May 2017

  • CVE-2019-15328
    24İzleyin

    The import-users-from-csv-with-meta plugin before 1.14.0.3 for WordPress has XSS.

    OrtaCVSS 6,1İstismar yokEPSS %1

    codection · import users from csv with meta22 Ağu 2019

  • CVE-2015-9336
    24İzleyin

    The clean-login plugin before 1.5.1 for WordPress has reflected XSS.

    OrtaCVSS 6,1İstismar yokEPSS %1

    codection · clean login22 Ağu 2019

  • CVE-2019-15327
    24İzleyin

    The import-users-from-csv-with-meta plugin before 1.14.1.3 for WordPress has XSS via imported data.

    OrtaCVSS 6,1İstismar yokEPSS %1

    codection · import users from csv with meta22 Ağu 2019

  • CVE-2018-20101
    24İzleyin

    The codection "Import users from CSV with meta" plugin before 1.12.1 for WordPress allows XSS via the value of a cell.

    OrtaCVSS 6,1İstismar yokEPSS %1

    codection · import users from csv with meta12 Ara 2018

  • CVE-2019-14683
    22İzleyin

    The codection "Import users from CSV with meta" plugin before 1.14.2.2 for WordPress allows wp-admin/admin-ajax.php?action=acui_delete_attac

    OrtaCVSS 5,7İstismar yokEPSS %1

    codection · import users from csv with meta8 Ağu 2019

  • CVE-2022-4838
    21İzleyin

    Clean Login < 1.13.7 - Contributor+ Stored XSS via Shortcode

    OrtaCVSS 5,4İstismar yokEPSS %1

    codection · clean login6 Şub 2023

  • CVE-2023-6624
    21İzleyin

    Import and export users and customers <= 1.24.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via shortcode

    OrtaCVSS 5,4İstismar yokEPSS %0

    codection · import and export users and customers11 Oca 2024

  • CVE-2024-22151
    21İzleyin

    WordPress Import and export users and customers plugin <= 1.24.6 - Broken Access Control vulnerability

    OrtaCVSS 5,3İstismar yokEPSS %0

    codection · import and export users and customers8 Haz 2024

  • CVE-2022-1255
    19İzleyin

    Import and export users and customers < 1.19.2.1 - Admin+ Stored Cross-Site Scripting

    OrtaCVSS 4,8İstismar yokEPSS %1

    codection · import and export users and customers2 May 2022

  • CVE-2024-4734
    17İzleyin

    Import and export users and customers <= 1.26.6.1 - Authenticated (Administrator+) Stored Cross-Site Scripting

    OrtaCVSS 4,4İstismar yokEPSS %0

    carazo · import and export users and customers14 May 2024