Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
high-tech bridge vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-4625
Cross-site scripting (XSS) vulnerability in files/installer.cleanup.php in the Duplicator plugin prior to 0.4.5 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the package parameter.
Cory Lamle Duplicator
Cory Lamle Duplicator 0.4.2
Cory Lamle Duplicator 0.4.3
1 EDB exploit
NA
CVE-2013-1409
Cross-site scripting (XSS) vulnerability in the CommentLuv plugin prior to 2.92.4 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the _ajax_nonce parameter to wp-admin/admin-ajax.php.
Commentluv Commentluv 2.90.9.9
Commentluv Commentluv 2.90.9.8
Commentluv Commentluv 2.90.9.7
Commentluv Commentluv 2.90.9.6
Commentluv Commentluv 2.90.3
Commentluv Commentluv 2.90.1
Commentluv Commentluv 2.81.8
Commentluv Commentluv 2.81.7
Commentluv Commentluv 2.765
Commentluv Commentluv 2.764
Commentluv Commentluv
Commentluv Commentluv 2.91
Commentluv Commentluv 2.90.9.9.2
Commentluv Commentluv 2.90.9.4
Commentluv Commentluv 2.90.9.2
Commentluv Commentluv 2.90.7
Commentluv Commentluv 2.90.5
Commentluv Commentluv 2.81.6
Commentluv Commentluv 2.81.4
Commentluv Commentluv 2.769
Commentluv Commentluv 2.767
Commentluv Commentluv 2.76
1 EDB exploit
NA
CVE-2014-4736
SQL injection vulnerability in E2 prior to 2.4 (2845) allows remote malicious users to execute arbitrary SQL commands via the note-id parameter to @actions/comment-process.
Blogengine E2
1 EDB exploit
NA
CVE-2012-1467
Multiple directory traversal vulnerabilities in the iBrowser plugin library, as used in Open Journal Systems prior to 2.3.7, allow remote authenticated users to (1) delete or (2) rename arbitrary files via a .. (dot dot) in the param parameter to lib/pkp/lib/tinymce/jscripts/tiny...
Pkp Open Journal Systems
1 EDB exploit
NA
CVE-2012-1468
Incomplete blacklist vulnerability in Open Journal Systems prior to 2.3.7 allows remote authenticated users with the Author Role permission to execute arbitrary code by uploading a file with an executable extension that is not ".php", then accessing it via a direct requ...
Pkp Open Journal Systems
1 EDB exploit
NA
CVE-2012-3232
Cross-site scripting (XSS) vulnerability in search.php in web@all 2.0, as downloaded before May 30, 2012, allows remote malicious users to inject arbitrary web script or HTML via the _text[title] parameter.
Webatall Web\\@all 2.0
1 EDB exploit
NA
CVE-2012-3233
Cross-site scripting (XSS) vulnerability in __swift/thirdparty/PHPExcel/PHPExcel/Shared/JAMA/docs/download.php in Kayako Fusion 4.40.1148, and possibly prior to 4.50.1581, allows remote malicious users to inject arbitrary web script or HTML via the PATH_INFO.
Kayako Fusion 4.40.1148
1 EDB exploit
6.1
CVSSv3
CVE-2012-2452
Multiple cross-site scripting (XSS) vulnerabilities in pragmaMx 1.x prior to 1.12.2 allow remote malicious users to inject arbitrary web script or HTML via the (1) name parameter to modules.php or (2) img_url to includes/wysiwyg/spaw/editor/plugins/imgpopup/img_popup.php.
Pragmamx Pragmamx
2 EDB exploits
NA
CVE-2012-0996
Multiple directory traversal vulnerabilities in 11in1 1.2.1 stable 12-31-2011 allow remote malicious users to read arbitrary files via a .. (dot dot) in the class parameter to (1) index.php or (2) admin/index.php.
11in1 11in1 1.2.1
2 EDB exploits
6.1
CVSSv3
CVE-2012-1001
Multiple cross-site scripting (XSS) vulnerabilities in Chyrp prior to 2.1.2 and prior to 2.5 Beta 2 allow remote malicious users to inject arbitrary web script or HTML via the (1) content parameter to includes/ajax.php or (2) body parameter to includes/error.php.
Chyrp Chyrp
Chyrp Chyrp 2.5.2
2 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
privilege escalation
CVE-2024-20696
CVE-2024-29829
CVE-2024-33999
CVE-2024-35646
physical
CVE-2024-24919
CVE-2024-31030
local users
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »