Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
htbridge.com vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2014-6243
Cross-site scripting (XSS) vulnerability in the EWWW Image Optimizer plugin prior to 2.0.2 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the error parameter in the ewww-image-optimizer.php page to wp-admin/options-general.php, which is not...
Ewww Image Optimizer Plugin Project Ewww Image Optimizer Plugin
Ewww Image Optimizer Plugin Project Ewww Image Optimizer Plugin 2.0.0
383
VMScore
CVE-2014-6315
Multiple cross-site scripting (XSS) vulnerabilities in the Web-Dorado Photo Gallery plugin 1.1.30 and previous versions for WordPress allow remote malicious users to inject arbitrary web script or HTML via the (1) callback, (2) dir, or (3) extensions parameter in an addImages act...
Photo Gallery Plugin Project Photo Gallery Plugin 1.1.30
383
VMScore
CVE-2013-4600
Multiple cross-site scripting (XSS) vulnerabilities in Alkacon OpenCms prior to 8.5.2 allow remote malicious users to inject arbitrary web script or HTML via the (1) title parameter to system/workplace/views/admin/admin-main.jsp or the (2) requestedResource parameter to system/lo...
Alkacon Opencms 6.2.3
Alkacon Opencms 7.0.3
Alkacon Opencms 7.0.4
Alkacon Opencms
Alkacon Opencms 6.2
Alkacon Opencms 6.0.3
Alkacon Opencms 6.0.0
Alkacon Opencms 6.0.2
Alkacon Opencms 6.0.4
Alkacon Opencms 6.2.1
Alkacon Opencms 6.2.2
Alkacon Opencms 8.5
383
VMScore
CVE-2013-5744
Cross-site scripting (XSS) vulnerability in Feng Office 2.3.2-rc and previous versions allows remote malicious users to inject arbitrary web script or HTML via an arbitrary ref_XXX parameter.
Fengoffice Feng Office 2.3.1
Fengoffice Feng Office 2.3
Fengoffice Feng Office 2.1.0
Fengoffice Feng Office 1.7.1
Fengoffice Feng Office 1.7
Fengoffice Feng Office 2.2.3.1
Fengoffice Feng Office 2.2.2
Fengoffice Feng Office 2.2.1
Fengoffice Feng Office 2.0.0
Fengoffice Feng Office 1.7.5
Fengoffice Feng Office 2.3.2
Fengoffice Feng Office 2.2.4.1
Fengoffice Feng Office 2.2.4
Fengoffice Feng Office 2.2.0
Fengoffice Feng Office 1.7.4
Fengoffice Feng Office 1.7.2
Fengoffice Feng Office
Fengoffice Feng Office 2.3.1.1
Fengoffice Feng Office 1.7.3.1
Fengoffice Feng Office 1.6.2
890
VMScore
CVE-2014-7985
Directory traversal vulnerability in EspoCRM prior to 2.6.0 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the action parameter to install/index.php.
Espocrm Espocrm
NA
CVE-2012-09841
XOOPS version 2.5.4 suffers from multiple cross site scripting vulnerabilities.
NA
CVE-2012-09953
ZENphoto version 1.4.2 suffers from PHP code execution, cross site scripting and remote SQL injection vulnerabilities.
668
VMScore
CVE-2012-0998
Directory traversal vulnerability in account/preferences.php in LEPTON prior to 1.1.4 allows remote malicious users to include and execute arbitrary files via a .. (dot dot) in the language parameter.
Lepton-cms Lepton 1.1.2
Lepton-cms Lepton 1.1.0
Lepton-cms Lepton
Lepton-cms Lepton 1.1.1
NA
CVE-2012-10003
A vulnerability, which was classified as problematic, has been found in ahmyi RivetTracker. This issue affects some unknown processing. The manipulation of the argument $_SERVER['PHP_SELF'] leads to cross site scripting. The attack may be initiated remotely. The patch i...
Rivettracker Project Rivettracker
NA
CVE-2012-14671
Open Journal Systems version 2.3.6 suffers from file manipulation, cross site scripting, and shell upload vulnerabilities.
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-21987
buffer overflow
CVE-2024-28890
CVE-2024-27574
CVE-2024-27347
CVE-2024-31450
privilege
SSTI
CVE-2024-31666
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »