Show filters
96 Total Results
Displaying 11-20 of 96
Sort by:
Attacker Value
Unknown
CVE-2022-30998
Disclosure Date: July 19, 2022 (last updated February 24, 2025)
Multiple Authenticated (subscriber or higher user role) SQL Injection (SQLi) vulnerabilities in WooPlugins.co's Homepage Product Organizer for WooCommerce plugin <= 1.1 at WordPress.
0
Attacker Value
Unknown
CVE-2022-31548
Disclosure Date: July 11, 2022 (last updated February 24, 2025)
The nrlakin/homepage repository through 2017-03-06 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
0
Attacker Value
Unknown
CVE-2021-24767
Disclosure Date: November 08, 2021 (last updated February 23, 2025)
The Redirect 404 Error Page to Homepage or Custom Page with Logs WordPress plugin before 1.7.9 does not check for CSRF when deleting logs, which could allow attacker to make a logged in admin delete them via a CSRF attack
0
Attacker Value
Unknown
CVE-2021-24326
Disclosure Date: May 17, 2021 (last updated February 22, 2025)
The tab parameter of the settings page of the All 404 Redirect to Homepage WordPress plugin before 1.21 was vulnerable to an authenticated reflected Cross-Site Scripting (XSS) issue as user input was not properly sanitised before being output in an attribute.
0
Attacker Value
Unknown
CVE-2021-24324
Disclosure Date: May 17, 2021 (last updated February 22, 2025)
The 404 SEO Redirection WordPress plugin through 1.3 is lacking CSRF checks in all its settings, allowing attackers to make a logged in user change the plugin's settings. Due to the lack of sanitisation and escaping in some fields, it could also lead to Stored Cross-Site Scripting issues
0
Attacker Value
Unknown
CVE-2017-12551
Disclosure Date: February 15, 2018 (last updated November 26, 2024)
A local arbitrary execution of commands vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.6.1 was found.
0
Attacker Value
Unknown
CVE-2017-12553
Disclosure Date: February 15, 2018 (last updated November 26, 2024)
A local authentication bypass vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.6.1 was found.
0
Attacker Value
Unknown
CVE-2017-12545
Disclosure Date: February 15, 2018 (last updated November 26, 2024)
A remote denial of service vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.6.1 was found.
0
Attacker Value
Unknown
CVE-2017-12549
Disclosure Date: February 15, 2018 (last updated November 26, 2024)
A local authentication bypass vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.6.1 was found.
0
Attacker Value
Unknown
CVE-2017-12547
Disclosure Date: February 15, 2018 (last updated November 26, 2024)
A local arbitrary command execution vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.6.1 was found.
0