|
270791
|
7.5 |
HIGH
Network
|
qt fedoraproject
|
qt fedora
|
Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.
|
CWE-776
XML Entity Expansion
|
CVE-2015-9541
|
2024-11-21 11:40 |
2020-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270792
|
6.1 |
MEDIUM
Network
|
chamilo
|
chamilo_lms
|
Chamilo LMS through 1.9.10.2 allows a link_goto.php?link_url= open redirect, a related issue to CVE-2015-5503.
|
CWE-601
Open Redirect
|
CVE-2015-9540
|
2024-11-21 11:40 |
2020-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270793
|
6.1 |
MEDIUM
Network
|
fast_secure_contact_form_project
|
fast_secure_contact_form
|
The Fast Secure Contact Form plugin before 4.0.38 for WordPress allows fs_contact_form1[welcome] XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2015-9539
|
2024-11-21 11:40 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270794
|
6.5 |
MEDIUM
Network
|
imagely
|
nextgen_gallery
|
The NextGEN Gallery plugin before 2.1.15 for WordPress allows ../ Directory Traversal in path selection.
|
CWE-22
Path Traversal
|
CVE-2015-9538
|
2024-11-21 11:40 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270795
|
5.4 |
MEDIUM
Network
|
imagely
|
nextgen_gallery
|
The NextGEN Gallery plugin before 2.1.10 for WordPress has multiple XSS issues involving thumbnail_width, thumbnail_height, thumbwidth, thumbheight, wmXpos, and wmYpos, and template.
|
CWE-79
Cross-site Scripting
|
CVE-2015-9537
|
2024-11-21 11:40 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270796
|
6.1 |
MEDIUM
Network
|
sandhillsdev easydigitaldownloads
|
easy_digital_downloads recount_earnings
|
The Easy Digital Downloads (EDD) Recount Earnings extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2…
|
CWE-79
Cross-site Scripting
|
CVE-2015-9524
|
2024-11-21 11:40 |
2019-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270797
|
6.1 |
MEDIUM
Network
|
sandhillsdev easydigitaldownloads
|
easy_digital_downloads recommended_products
|
The Easy Digital Downloads (EDD) Recommended Products extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, a…
|
CWE-79
Cross-site Scripting
|
CVE-2015-9523
|
2024-11-21 11:40 |
2019-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270798
|
6.1 |
MEDIUM
Network
|
sandhillsdev easydigitaldownloads
|
easy_digital_downloads qr_code
|
The Easy Digital Downloads (EDD) QR Code extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x befo…
|
CWE-79
Cross-site Scripting
|
CVE-2015-9522
|
2024-11-21 11:40 |
2019-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270799
|
6.1 |
MEDIUM
Network
|
sandhillsdev easydigitaldownloads
|
easy_digital_downloads pushover_notifications
|
The Easy Digital Downloads (EDD) Pushover Notifications extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9,…
|
CWE-79
Cross-site Scripting
|
CVE-2015-9521
|
2024-11-21 11:40 |
2019-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270800
|
6.1 |
MEDIUM
Network
|
sandhillsdev easydigitaldownloads
|
easy_digital_downloads per_product_emails
|
The Easy Digital Downloads (EDD) Per Product Emails extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and…
|
CWE-79
Cross-site Scripting
|
CVE-2015-9520
|
2024-11-21 11:40 |
2019-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|