Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
genetechsolutions pie register vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2021-24731
The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin prior to 3.7.1.6 does not properly escape user data before using it in a SQL statement in the wp-json/pie/v1/login REST API endpoint, leading to ...
Genetechsolutions Pie Register
9.8
CVSSv3
CVE-2019-15659
The pie-register plugin prior to 3.1.2 for WordPress has SQL injection, a different issue than CVE-2018-10969.
Genetechsolutions Pie Register
9.8
CVSSv3
CVE-2018-10969
SQL injection vulnerability in the Pie Register plugin prior to 3.0.10 for WordPress allows remote malicious users to execute arbitrary SQL commands via the invitation codes grid.
Genetechsolutions Pie Register
1 EDB exploit
8.1
CVSSv3
CVE-2021-24647
The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin prior to 3.1.7.6 has a flaw in the social login implementation, allowing unauthenticated malicious user to login as any user on the site by only ...
Genetechsolutions Pie Register
1 Github repository
6.5
CVSSv3
CVE-2022-4024
The Registration Forms WordPress plugin prior to 3.8.1.3 does not have authorisation and CSRF when deleting users via an init action handler, allowing unauthenticated malicious users to delete arbitrary users (along with their posts)
Genetechsolutions Pie Register
6.1
CVSSv3
CVE-2021-24239
The Pie Register – User Registration Forms. Invitation based registrations, Custom Login, Payments WordPress plugin prior to 3.7.0.1 does not sanitise the invitaion_code GET parameter when outputting it in the Activation Code page, leading to a reflected Cross-Site Scriptin...
Genetechsolutions Pie Register
6.1
CVSSv3
CVE-2019-1010207
Genetechsolutions Pie Register 3.0.15 is affected by: Cross Site Scripting (XSS). The impact is: Stealing of session cookies. The component is: File: Login. Parameters: interim-login, wp-lang, and supplied URL. The attack vector is: If a victim clicks a malicious link, the attack...
Genetechsolutions Pie Register 3.0.15
5.4
CVSSv3
CVE-2023-0552
The Registration Forms WordPress plugin prior to 3.8.2.3 does not properly validate the redirection URL when logging in and login out, leading to an Open Redirect vulnerability
Genetechsolutions Pie Register
NA
CVE-2015-7377
Cross-site scripting (XSS) vulnerability in pie-register/pie-register.php in the Pie Register plugin prior to 2.0.19 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the invitaion_code parameter in a pie-register page to the default URI.
Genetechsolutions Pie Register
NA
CVE-2015-7682
Multiple SQL injection vulnerabilities in pie-register/pie-register.php in the Pie Register plugin prior to 2.0.19 for WordPress allow remote administrators to execute arbitrary SQL commands via the (1) select_invitaion_code_bulk_option or (2) invi_del_id parameter in the pie-inv...
Genetechsolutions Pie Register
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »