Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
htbridge.com vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-71391
WordPress Contact Form DB plugin version 2.8.13 suffers from a cross site scripting vulnerability.
4.3
CVSSv2
CVE-2014-7181
Cross-site scripting (XSS) vulnerability in the Max Foundry MaxButtons plugin prior to 1.26.1 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the id parameter in a button action on the maxbuttons-controller page to wp-admin/admin.php, relate...
Maxfoundry Maxbuttons 1.26.0
NA
CVE-2014-07931
Joomla Komento extension version 1.7.2 suffers from a cross site scripting vulnerability.
6
CVSSv2
CVE-2014-9573
SQL injection vulnerability in manage_user_page.php in MantisBT prior to 1.2.19 and 1.3.x prior to 1.3.0-beta.2 allows remote administrators with FILE privileges to execute arbitrary SQL commands via the MANTIS_MANAGE_USERS_COOKIE cookie.
Mantisbt Mantisbt
Mantisbt Mantisbt 1.3.0
4.3
CVSSv2
CVE-2015-3421
The eshop_checkout function in checkout.php in the Wordpress Eshop plugin 6.3.11 and previous versions does not validate variables in the "eshopcart" HTTP cookie, which allows remote malicious users to perform cross-site scripting (XSS) attacks, or a path disclosure att...
Eshop Project Eshop
4.3
CVSSv2
CVE-2015-5532
Multiple cross-site scripting (XSS) vulnerabilities in the Paid Memberships Pro (PMPro) plugin prior to 1.8.4.3 for WordPress allow remote malicious users to inject arbitrary web script or HTML via the (1) s parameter to membershiplevels.php, (2) memberslist.php, or (3) orders.ph...
Strangerstudios Paid Memberships Pro
NA
CVE-2015-55321
WordPress Paid Memberships Pro plugin version 1.8.4.2 suffers from a cross site scripting vulnerability.
4.3
CVSSv2
CVE-2014-6243
Cross-site scripting (XSS) vulnerability in the EWWW Image Optimizer plugin prior to 2.0.2 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the error parameter in the ewww-image-optimizer.php page to wp-admin/options-general.php, which is not...
Ewww Image Optimizer Plugin Project Ewww Image Optimizer Plugin
Ewww Image Optimizer Plugin Project Ewww Image Optimizer Plugin 2.0.0
NA
CVE-2013-46001
OpenCMS version 8.5.1 suffers from a cross site scripting vulnerability.
4.3
CVSSv2
CVE-2013-4626
Cross-site scripting (XSS) vulnerability in the BackWPup plugin prior to 3.0.13 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the tab parameter to wp-admin/admin.php.
Marketpress Backwpup Plugin 3.0.7
Marketpress Backwpup Plugin 3.0.6
Marketpress Backwpup Plugin 3.0.5
Marketpress Backwpup Plugin 3.0.4
Marketpress Backwpup Plugin 3.0
Marketpress Backwpup Plugin
Marketpress Backwpup Plugin 3.0.10
Marketpress Backwpup Plugin 3.0.8
Marketpress Backwpup Plugin 3.0.3
Marketpress Backwpup Plugin 3.0.1
Marketpress Backwpup Plugin 3.0.11
Marketpress Backwpup Plugin 3.0.9
Marketpress Backwpup Plugin 3.0.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4367
CVE-2024-35977
CVE-2023-49335
man-in-the-middle
CVE-2024-4947
CVE-2024-31714
memory leak
SQL
CVE-2024-35994
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
6
7
8
9
10
NEXT »