The MailPoet plugin before 3.23.2 for WordPress allows remote attackers to inject arbitrary web script or HTML using extra parameters in the URL (Reflective Server-Side XSS).
Published at: June 02, 2020 at 01:15PM
View on website
The MailPoet plugin before 3.23.2 for WordPress allows remote attackers to inject arbitrary web script or HTML using extra parameters in the URL (Reflective Server-Side XSS).
Published at: June 02, 2020 at 01:15PM
View on website
FarLinX X25 Gateway through 2014-09-25 allows command injection via shell metacharacters to sysSaveMonitorData.php, fsx25MonProxy.php, syseditdate.php, iframeupload.php, or sysRestoreX25Cplt.php.
Published at: June 01, 2020 at 01:15PM
View on website
FarLinX X25 Gateway through 2014-09-25 allows directory traversal via the log-handling feature.
Published at: June 01, 2020 at 01:15PM
View on website
FarLinX X25 Gateway through 2014-09-25 allows attackers to write arbitrary data to fsUI.xyz via fsSaveUIPersistence.php.
Published at: June 01, 2020 at 01:15PM
View on website
Lexiglot through 2014-11-20 allows denial of service because api/update.php launches svn update operations that use a great deal of resources.
Published at: June 01, 2020 at 01:15PM
View on website