|
280131
|
- |
|
fbpromotions_project
|
fbpromotions
|
Multiple cross-site scripting (XSS) vulnerabilities in admin/swarm-settings.php in the Bugs Go Viral : Facebook Promotion Generator (fbpromotions) plugin 1.3.4 and earlier for WordPress allow remote …
|
CWE-79
Cross-site Scripting
|
CVE-2014-4528
|
2024-11-21 11:10 |
2014-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280132
|
- |
|
diversesolutions
|
dsidxpress_idx_plugin
|
Cross-site scripting (XSS) vulnerability in client-assist.php in the dsIDXpress IDX plugin before 2.1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the action par…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4521
|
2024-11-21 11:10 |
2014-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280133
|
- |
|
dmca
|
dmca_watermarker
|
Cross-site scripting (XSS) vulnerability in phprack.php in the DMCA WaterMarker plugin before 1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the plugin_dir param…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4520
|
2024-11-21 11:10 |
2014-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280134
|
- |
|
d-coda
|
contactme
|
Cross-site scripting (XSS) vulnerability in xd_resize.php in the Contact Form by ContactMe.com plugin 2.3 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via …
|
CWE-79
Cross-site Scripting
|
CVE-2014-4518
|
2024-11-21 11:10 |
2014-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280135
|
- |
|
bic_media_widget_plugin
|
bic_media_widget
|
Cross-site scripting (XSS) vulnerability in bicm-carousel-preview.php in the BIC Media Widget plugin 1.0 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via t…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4516
|
2024-11-21 11:10 |
2014-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280136
|
- |
|
anyfont_plugin_project
|
anyfont
|
Cross-site scripting (XSS) vulnerability in mce_anyfont/dialog.php in the AnyFont plugin 2.2.3 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the text pa…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4515
|
2024-11-21 11:10 |
2014-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280137
|
- |
|
activehelper
|
activehelper_livehelp_live_chat
|
Multiple cross-site scripting (XSS) vulnerabilities in server/offline.php in the ActiveHelper LiveHelp Live Chat plugin 3.1.0 and earlier for WordPress allow remote attackers to inject arbitrary web …
|
CWE-79
Cross-site Scripting
|
CVE-2014-4513
|
2024-11-21 11:10 |
2014-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280138
|
- |
|
hp
|
enterprise_maps
|
HP Enterprise Maps 1.00 allows remote authenticated users to read arbitrary files via a WSDL document containing an XML external entity declaration in conjunction with an entity reference within a Ge…
|
CWE-200
Information Exposure
|
CVE-2014-4669
|
2024-11-21 11:10 |
2014-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280139
|
- |
|
piwigo
|
piwigo
|
SQL injection vulnerability in the photo-edit subsystem in Piwigo 2.6.x and 2.7.x before 2.7.0beta2 allows remote authenticated administrators to execute arbitrary SQL commands via the associate[] fi…
|
CWE-89
SQL Injection
|
CVE-2014-4649
|
2024-11-21 11:10 |
2014-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280140
|
- |
|
piwigo
|
piwigo
|
Unspecified vulnerability in Piwigo before 2.6.3 has unknown impact and attack vectors, related to a "security failure."
|
NVD-CWE-noinfo
|
CVE-2014-4648
|
2024-11-21 11:10 |
2014-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|