Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
marketing vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2024-2876
The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin for WordPress is vulnerable to SQL Injection via the 'run' function of the 'IG_ES_Subscribers_Query' class in all versions up to, a...
1 Github repository
1 Article
9.8
CVSSv3
CVE-2023-6441
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in UNI-PA University Marketing & Computer Internet Trade Inc. University Information System allows SQL Injection.This issue affects University Information System: prio...
9.8
CVSSv3
CVE-2023-51414
Deserialization of Untrusted Data vulnerability in EnvialoSimple EnvíaloSimple: Email Marketing y Newsletters.This issue affects EnvíaloSimple: Email Marketing y Newsletters: from n/a up to and including 2.1.
Donweb Envialosimple\\ Email Marketing Y Newsletters
9.8
CVSSv3
CVE-2022-45810
Improper Neutralization of Formula Elements in a CSV File vulnerability in Icegram Icegram Express – Email Marketing, Newsletters and Automation for WordPress & WooCommerce.This issue affects Icegram Express – Email Marketing, Newsletters and Automation for WordPr...
Icegram Icegram Express
9.8
CVSSv3
CVE-2023-4833
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Besttem Network Marketing Software allows SQL Injection.This issue affects Network Marketing Software: prior to 1.0.2309.6.
Besttem Network Marketing Project Besttem Network Marketing
9.8
CVSSv3
CVE-2020-10257
The ThemeREX Addons plugin prior to 2020-03-09 for WordPress lacks access control on the /trx_addons/v2/get/sc_layout REST API endpoint, allowing for PHP functions to be executed by any users, because includes/plugin.rest-api.php calls trx_addons_rest_get_sc_layout with an unsafe...
Themerex Addons 1.70.3
Themerex Ozeum-museum
Themerex Chit Club-board Games
Themerex Addons 1.6.67
Themerex Yottis-simple Portfolio
Themerex Addons 1.6.66
Themerex Helion-agency \\&portfolio
Themerex Amuli
Themerex Addons 1.6.65
Themerex Nelson-barbershop \\+ Tattoo Salon
Themerex Hallelujah-church
Themerex Right Way
Themerex Prider-pride Fest
Themerex Addons 1.6.62.3
Themerex Mystik-esoterics
Themerex Skydiving And Flying Company
Themerex Addons 1.6.62.1
Themerex Dronex-aerial Photography Services
Themerex Addons 1.6.61.2
Themerex Samadhi-buddhist
Themerex Addons 1.6.61.3
Themerex Tantum-rent A Car\\, Rent A Bike\\, Rent A Scooter Multiskin Theme
9.8
CVSSv3
CVE-2016-0224
SQL injection vulnerability in IBM Marketing Platform 8.5.x, 8.6.x, and 9.x prior to 9.1.2.2 allows remote malicious users to execute arbitrary SQL commands via unspecified vectors.
Ibm Marketing Platform 9.1.0.5
Ibm Marketing Platform 9.1.0.4
Ibm Marketing Platform 9.1.0.3
Ibm Marketing Platform 9.1.0.2
Ibm Marketing Platform 8.6.0.6
Ibm Marketing Platform 8.6.0.5
Ibm Marketing Platform 8.6.0.4
Ibm Marketing Platform 8.6.0.3
Ibm Marketing Platform 8.6.0.2
Ibm Marketing Platform 9.1.1.3
Ibm Marketing Platform 9.1.1.2
Ibm Marketing Platform 9.1.1.1
Ibm Marketing Platform 9.1.1.0
Ibm Marketing Platform 9.0.0.2
Ibm Marketing Platform 9.0.0.1
Ibm Marketing Platform 9.0.0.0
Ibm Marketing Platform 8.6.0.11
Ibm Marketing Platform 8.5.0.5
Ibm Marketing Platform 8.5.0.4
Ibm Marketing Platform 8.5.0.3
Ibm Marketing Platform 8.5.0.2
Ibm Marketing Platform 9.1.1.4
9.1
CVSSv3
CVE-2021-2355
Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP...
Oracle Marketing
9.1
CVSSv3
CVE-2021-2205
Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.2.7-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Ora...
2 Github repositories
9.1
CVSSv3
CVE-2020-14875
Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via ...
Oracle Marketing
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30043
camera
CVE-2023-40404
CVE-2024-2793
client side
CVE-2024-4469
CVE-2024-3565
CVE-2024-29825
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »