CVE Catalog
Browse the latest Common Vulnerabilities and Exposures (CVEs) with CVSS scores, affected products, and next-gen risk scores.
AdPortal File Upload Bypass Vulnerability Allowing Arbitrary Code Execution
A file upload bypass vulnerability has been identified in AdPortal version 3.0.39. This vulnerability allows remote attackers to execute arbitrary code by exploiting the file upload functionality.
iPublish Media Solutions AdPortal Cross-Site Scripting Vulnerability
A cross-site scripting (XSS) vulnerability has been identified in iPublish Media Solutions AdPortal version 3.0.39. This vulnerability allows remote attackers to inject malicious scripts that could be executed in the context of the user's browser. The issue arises from the shippingAsBilling parameter in the updateuserinfo.html file, which can be exploited to escalate privileges.
AdPortal Server-Side Template Injection Vulnerability Allowing Arbitrary Code Execution
A server-side template injection vulnerability has been identified in AdPortal version 3.0.39. This vulnerability allows remote attackers to execute arbitrary code by manipulating the shippingAsBilling and firstname parameters in the updateuserinfo.html file.
AIMS eCrew Authorization Bypass Vulnerability
An authorization bypass vulnerability has been identified in AIMS eCrew, affecting multiple functions. This issue allows for unauthorized actions or access by bypassing authentication mechanisms. The vulnerability has been addressed in version JUN23 #190.
Splunk App for SOAR Privilege Escalation Vulnerability
A privilege escalation vulnerability exists in the Splunk App for SOAR, specifically in versions 1.0.67 and earlier. The issue arises because the Splunk documentation for these versions recommended granting the 'admin_all_objects' capability to the 'splunk_app_soar' role. This could result in improper access control, allowing low-privileged users without 'admin' roles to gain elevated permissions.
Ali Alpha Price Table For Elementor DOM-Based Cross-Site Scripting Vulnerability
A DOM-based cross-site scripting vulnerability has been identified in the Ali Alpha Price Table For Elementor plugin, affecting versions through 1.0.8. This issue arises from improper input sanitization during web page generation, allowing malicious actors to inject and execute harmful scripts on the site.
WordPress EMC2 Alert Boxes Plugin Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the WordPress EMC2 Alert Boxes plugin, affecting versions through 1.3. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
ORION Allada T-Shirt Designer for WooCommerce Missing Authorization Vulnerability
A broken access control vulnerability has been identified in the ORION Allada T-Shirt Designer for WooCommerce plugin, affecting versions through 1.1. This vulnerability allows unauthenticated users to perform actions that require higher privileges, due to a lack of proper authorization checks.
Code Themes Digi Store DOM-Based Cross-Site Scripting Vulnerability
A DOM-based cross-site scripting vulnerability has been identified in the Code Themes Digi Store WordPress theme, affecting versions through 1.1.4. This issue arises from improper input sanitization during web page generation, allowing malicious actors to inject and execute harmful scripts on the site.
WpIndeed Ultimate Learning Pro SQL Injection Vulnerability
A SQL injection vulnerability has been identified in the WpIndeed Ultimate Learning Pro plugin, affecting versions through 3.9. This vulnerability allows for improper neutralization of special elements used in SQL commands, potentially enabling malicious actors to interact with the database and steal information.
FilaThemes Education LMS Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the FilaThemes Education LMS WordPress theme, affecting versions through 0.0.7. This vulnerability allows malicious users to inject harmful scripts that are executed when other users visit the affected page.
WordPress Social Media Share Buttons | MashShare Missing Authorization Vulnerability
A broken access control vulnerability has been identified in the WordPress Social Media Share Buttons | MashShare plugin, affecting versions through 4.0.47. This vulnerability arises from a missing authorization check, which could allow an unprivileged user to perform actions reserved for higher privileges.
Link Whisper WordPress Plugin Sensitive Data Exposure Vulnerability
A vulnerability allowing the exposure of sensitive information has been identified in the Link Whisper Free WordPress plugin, affecting versions through 0.7.7. This issue could enable unauthorized users to access confidential data that is typically restricted.
HashThemes Hash Elements Plugin Cross-Site Scripting Vulnerability
A cross-site scripting (XSS) vulnerability has been identified in the HashThemes Hash Elements WordPress plugin, affecting versions through 1.4.9. This issue allows for improper neutralization of input during web page generation, enabling the injection of malicious scripts that could be executed when visitors access the site.
Code-Projects Online Book Shop SQL Injection Vulnerability in subcat.php
A critical SQL injection vulnerability has been identified in Code-Projects Online Book Shop version 1.0. The issue arises in the file subcat.php, where the cat parameter is manipulated to execute unauthorized SQL queries. This vulnerability can be exploited remotely, potentially leading to unauthorized access to the application's database or even remote code execution.
Code-Projects Online Book Shop SQL Injection Vulnerability
A critical SQL injection vulnerability has been identified in Code-Projects Online Book Shop version 1.0. The issue arises in the file '/search_result.php', where the 's' parameter is manipulated, allowing for unauthorized SQL query execution. This vulnerability can be exploited remotely, potentially leading to unauthorized database access or even remote code execution.
Silicon Labs SiWx91x Devices SHA2/224 Hash Length Vulnerability Leading to Denial-of-Service
A vulnerability in SiWx91x devices causes the SHA2/224 algorithm to produce a 256-bit hash instead of the correct 224-bit length. This discrepancy triggers a software assertion, resulting in a Denial-of-Service (DoS) condition. Devices with an implemented watchdog will restart after the watchdog expires, while those without will require a hard reset for recovery.
WordPress Hide Category by User Role for WooCommerce Missing Authorization Vulnerability
A missing authorization vulnerability has been identified in the WordPress plugin 'Hide Category by User Role for WooCommerce', affecting versions through 2.1.1. This vulnerability allows for arbitrary content deletion, enabling a malicious actor to remove posts, pages, or media from a website.
WordPress WP SecureSubmit Plugin Missing Authorization Vulnerability Allowing Sensitive Data Exposure
A missing authorization vulnerability has been identified in the WP SecureSubmit WordPress plugin, specifically in versions through 1.5.16. This vulnerability allows unauthorized users to access sensitive information that is typically restricted, potentially leading to the exploitation of other system weaknesses.
Invoice Ninja Remote Code Execution Vulnerability via Unauthenticated Route
A remote code execution vulnerability has been identified in Invoice Ninja versions 5.8.22 through 5.10.10. The issue arises from an unauthenticated route that allows attackers to execute arbitrary code if they know the APP_KEY. This vulnerability is compounded by default APP_KEY values in several .env files available in the product's repository. The vulnerable route, defined in 'invoiceninja/routes/client.php', accepts a parameter that is decrypted and unserialized, allowing for exploitation through Laravel's serialization mechanisms.
Joomla! Improper Access Control Vulnerability Allowing Unauthorized Access to Protected Views
A vulnerability exists in Joomla! CMS versions 3.9.0 through 3.10.19-elts, 4.0.0 through 4.4.9, and 5.0.0 through 5.2.2, due to improper access controls that permit unauthorized access to protected views. This issue represents an ACL (Access Control List) violation, potentially allowing users to view content or features that should be restricted.
Joomla! CMS Cross-Site Scripting Vulnerability in Menu List ID Attribute
A cross-site scripting (XSS) vulnerability has been identified in Joomla! CMS. This issue arises from a lack of proper output escaping in the id attribute of menu lists. The vulnerability is present in Joomla! CMS versions 3.0.0 through 3.10.19-elts, 4.0.0 through 4.4.9, and 5.0.0 through 5.2.2.
Joomla! CMS Cross-Site Scripting Vulnerability in Module Chromes
A cross-site scripting (XSS) vulnerability has been identified in Joomla! CMS versions 4.0.0 through 4.4.9 and 5.0.0 through 5.2.2. The issue arises because various module chromes failed to properly process inputs, creating XSS vectors that could be exploited.
ABB AC500 V3 Command Execution Vulnerability via Directory Traversal
A command execution vulnerability has been identified in ABB AC500 V3 products (PM5xxx) with firmware versions prior to 3.8.0. This vulnerability arises from a directory traversal issue (CVE-2024-12429), which allows a successfully authenticated attacker to inject arbitrary commands into a specially crafted file. The injected commands are then executed by the root user.
ABB AC500 V3 Read Access Vulnerability in PM5xxx Products Prior to 3.8.0
A vulnerability in ABB's AC500 V3 PM5xxx products prior to firmware version 3.8.0 allows successfully authenticated attackers to read system-wide files and configuration. This vulnerability could be exploited to grant unauthorized read access to sensitive files.
Burria Laika Pedigree Tree Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the Burria Laika Pedigree Tree WordPress plugin, affecting versions through 1.4. This vulnerability arises from improper input sanitization during web page generation, allowing malicious users to inject harmful scripts that are executed when the affected page is viewed.
WordPress 1003 Mortgage Application Plugin Broken Access Control Vulnerability
A broken access control vulnerability has been identified in the WordPress 1003 Mortgage Application plugin, affecting versions through 1.87. This vulnerability allows users to access functionalities that are not properly restricted by access control lists (ACLs), potentially leading to unauthorized actions or data exposure.
WordPress 1003 Mortgage Application Plugin Broken Access Control Vulnerability
A missing authorization vulnerability has been identified in the WordPress 1003 Mortgage Application plugin, specifically in versions through 1.87. This vulnerability allows exploitation of improperly configured access control, potentially enabling unprivileged users to perform actions reserved for higher privileges.
WordPress Prayer Times Anywhere Plugin Cross-Site Request Forgery Vulnerability Allowing Stored Cross-Site Scripting
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the WordPress Prayer Times Anywhere plugin, affecting versions through 2.0.1. This vulnerability allows for Stored Cross-Site Scripting, where an attacker can inject malicious scripts that are executed by users.
WordPress Quote Tweet Plugin Cross-Site Request Forgery Vulnerability Allowing Stored Cross-Site Scripting
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the WordPress Quote Tweet plugin, affecting versions through 0.7. This vulnerability allows for Stored Cross-Site Scripting (XSS) attacks, where an attacker can inject malicious scripts that are executed by users.
WordPress Ultimate Image Hover Effects Plugin DOM-Based Cross-Site Scripting Vulnerability
A DOM-based cross-site scripting vulnerability has been identified in the WordPress Ultimate Image Hover Effects plugin, affecting versions through 1.1.2. This issue arises from improper neutralization of input during web page generation, allowing malicious actors to inject and execute harmful scripts on the website.
WordPress Timeline Pro DOM-Based Cross-Site Scripting Vulnerability
A DOM-based cross-site scripting vulnerability has been identified in the WordPress Timeline Pro plugin, affecting versions through 1.3. This issue arises from improper input sanitization during web page generation, allowing malicious actors to inject and execute harmful scripts on the site.
Scott Nellé Uptime Robot WordPress Plugin Cross-Site Request Forgery Vulnerability Allowing Stored Cross-Site Scripting
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the Scott Nellé Uptime Robot WordPress plugin, affecting versions through 0.1.3. This vulnerability allows for Stored Cross-Site Scripting, where an attacker can inject malicious scripts that are executed by users.
Bytephp Arcade Ready Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the Bytephp Arcade Ready plugin for WordPress, affecting versions through 1.1. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
Biltorvet Dealer Tools Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the Biltorvet Dealer Tools WordPress plugin, affecting versions through 1.0.22. This vulnerability allows for improper neutralization of input during web page generation, enabling the injection of malicious scripts that could be executed when users visit the affected site.
Arefly WP Header Notification Plugin Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the Arefly WP Header Notification plugin for WordPress, affecting versions through 1.2.7. This vulnerability arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the affected site.
AazzTech WP Cookie Plugin Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the AazzTech WP Cookie plugin for WordPress, affecting versions through 1.0.0. This vulnerability allows malicious users to inject scripts that are executed when other users visit the affected site.
WordPress Able Player Plugin DOM-Based Cross-Site Scripting Vulnerability
A DOM-based cross-site scripting vulnerability has been identified in the WordPress Able Player plugin, affecting versions through 1.0. This issue arises from improper input sanitization during web page generation, allowing malicious actors to inject and execute harmful scripts on the site.
WordPress ICS Button Plugin Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the WordPress ICS Button plugin, affecting versions through 0.6. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
WordPress Icons Enricher Plugin Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the WordPress Icons Enricher plugin, affecting versions through 1.0.8. This issue arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the affected site.
WordPress Legacy ePlayer Plugin Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the WordPress Legacy ePlayer plugin, affecting versions through 0.9.9. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
Instabot WordPress Plugin Cross-Site Request Forgery Vulnerability
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Instabot WordPress plugin, affecting versions through 1.10. This vulnerability allows attackers to trick users with higher privileges into performing actions they did not intend to.
Faaiq Pretty Url WordPress Plugin Cross-Site Request Forgery Vulnerability
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Faaiq Pretty Url WordPress plugin, affecting versions through 1.5.4. This vulnerability allows attackers to trick users with higher privileges into performing actions they did not intend to.
WordPress Title Experiments Free Plugin Cross-Site Request Forgery Vulnerability
A Cross-Site Request Forgery (CSRF) vulnerability exists in the WordPress Title Experiments Free plugin, affecting versions through 9.0.4. This vulnerability allows attackers to trick users with higher privileges into performing actions they did not intend to.
Saoshyant Page Builder Missing Authorization Vulnerability Allowing Broken Access Control
A broken access control vulnerability has been identified in the Saoshyant Page Builder WordPress plugin, affecting versions through 3.8. This vulnerability arises from missing authorization checks, which can be exploited by unprivileged users to perform actions reserved for higher privileges.
WordPress TubePress.NET Plugin Cross-Site Request Forgery Vulnerability
A Cross-Site Request Forgery (CSRF) vulnerability exists in the WordPress TubePress.NET plugin, affecting versions through 4.0.1. This vulnerability allows attackers to trick users with higher privileges into performing actions they did not intend to.
WordPress mcjh Button Shortcode Plugin Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the WordPress mcjh Button Shortcode Plugin, affecting versions through 1.6.4. This issue arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the site.
WPMagic News Publisher Autopilot Cross-Site Request Forgery Vulnerability
A Cross-Site Request Forgery (CSRF) vulnerability exists in the WPMagic News Publisher Autopilot plugin, affecting versions through 2.1.4. This vulnerability allows attackers to trick users with higher privileges into performing actions they did not intend to.
WordPress Norse Rune Oracle Plugin Cross-Site Request Forgery Vulnerability
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Norse Rune Oracle WordPress plugin, affecting versions through 1.4.2. This vulnerability allows attackers to trick users with higher privileges into performing actions they did not intend to.
WordPress Smoothness Slider Shortcode Plugin Cross-Site Request Forgery Vulnerability
A Cross-Site Request Forgery (CSRF) vulnerability exists in the WordPress Smoothness Slider Shortcode plugin, affecting versions through 1.2.2. This vulnerability allows attackers to trick users with higher privileges into performing actions they did not intend to.
