Show filters
42 Total Results
Displaying 11-20 of 42
Sort by:
Attacker Value
Unknown

CVE-2015-9441

Disclosure Date: September 26, 2019 (last updated November 27, 2024)
The bookmarkify plugin 2.9.2 for WordPress has CSRF with resultant XSS via wp-admin/options-general.php?page=bookmarkify.php.
Attacker Value
Unknown

CVE-2015-9433

Disclosure Date: September 26, 2019 (last updated November 27, 2024)
The wp-social-bookmarking-light plugin before 1.7.10 for WordPress has CSRF with resultant XSS via configuration parameters for Tumblr, Twitter, Facebook, etc. in wp-admin/options-general.php?page=wp-social-bookmarking-light%2Fmodules%2Fadmin.php.
Attacker Value
Unknown

CVE-2018-0560

Disclosure Date: April 16, 2018 (last updated November 26, 2024)
Hatena Bookmark App for iOS Version 3.0 to 3.70 allows remote attackers to spoof the address bar via vectors related to URL display.
0
Attacker Value
Unknown

CVE-2013-3256

Disclosure Date: August 08, 2013 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the Shareaholic SexyBookmarks plugin 6.1.4.0 for WordPress allows remote attackers to hijack the authentication of users for requests that "manipulate plugin settings."
0
Attacker Value
Unknown

CVE-2012-1406

Disclosure Date: March 07, 2012 (last updated October 04, 2023)
Unspecified vulnerability in the GO Bookmark Widget (com.gau.go.launcherex.gowidget.bookmark) application 1.1 for Android has unknown impact and attack vectors.
0
Attacker Value
Unknown

CVE-2010-4915

Disclosure Date: October 08, 2011 (last updated October 04, 2023)
SQL injection vulnerability in index.cfm in ColdGen ColdBookmarks 1.22 allows remote attackers to execute arbitrary SQL commands via the BookmarkID parameter in an EditBookmark action.
0
Attacker Value
Unknown

CVE-2008-6410

Disclosure Date: March 06, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in show.php in ol'bookmarks manager 0.7.5 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the show parameter.
0
Attacker Value
Unknown

CVE-2008-6407

Disclosure Date: March 06, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the framefile parameter.
0
Attacker Value
Unknown

CVE-2008-6409

Disclosure Date: March 06, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute arbitrary SQL commands via the id parameter in a brain action.
0
Attacker Value
Unknown

CVE-2008-6408

Disclosure Date: March 06, 2009 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute arbitrary PHP code via a URL in the framefile parameter.
0