Show filters
349 Total Results
Displaying 111-120 of 349
Sort by:
Attacker Value
Unknown
CVE-2023-5325
Disclosure Date: November 27, 2023 (last updated February 25, 2025)
The Woocommerce Vietnam Checkout WordPress plugin before 2.0.6 does not escape the custom shipping phone field no the checkout form leading to XSS
0
Attacker Value
Unknown
CVE-2023-6287
Disclosure Date: November 27, 2023 (last updated February 25, 2025)
Sensitive data exposure in Webconf in Tribe29 Checkmk Appliance before 1.6.8 allows local attacker to retrieve passwords via reading log files.
0
Attacker Value
Unknown
CVE-2023-6251
Disclosure Date: November 24, 2023 (last updated February 25, 2025)
Cross-site Request Forgery (CSRF) in Checkmk < 2.2.0p15, < 2.1.0p37, <= 2.0.0p39 allow an authenticated attacker to delete user-messages for individual users.
0
Attacker Value
Unknown
CVE-2023-47810
Disclosure Date: November 22, 2023 (last updated February 25, 2025)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Asdqwe Dev Ajax Domain Checker plugin <= 1.3.0 versions.
0
Attacker Value
Unknown
CVE-2023-6157
Disclosure Date: November 22, 2023 (last updated February 25, 2025)
Improper neutralization of livestatus command delimiters in ajax_search in Checkmk <= 2.0.0p39, < 2.1.0p37, and < 2.2.0p15 allows arbitrary livestatus command execution for authorized users.
0
Attacker Value
Unknown
CVE-2023-6156
Disclosure Date: November 22, 2023 (last updated February 25, 2025)
Improper neutralization of livestatus command delimiters in the availability timeline in Checkmk <= 2.0.0p39, < 2.1.0p37, and < 2.2.0p15 allows arbitrary livestatus command execution for authorized users.
0
Attacker Value
Unknown
CVE-2023-23549
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
Improper Input Validation in Checkmk <2.2.0p15, <2.1.0p37, <=2.0.0p39 allows priviledged attackers to cause partial denial of service of the UI via too long hostnames.
0
Attacker Value
Unknown
CVE-2023-34177
Disclosure Date: November 09, 2023 (last updated February 25, 2025)
Cross-Site Request Forgery (CSRF) vulnerability in Kenth Hagström WP-Cache.Com plugin <= 1.1.1 versions.
0
Attacker Value
Unknown
CVE-2023-39619
Disclosure Date: October 25, 2023 (last updated February 25, 2025)
ReDos in NPMJS Node Email Check v.1.0.4 allows an attacker to cause a denial of service via a crafted string to the scpSyntax component.
0
Attacker Value
Unknown
CVE-2023-45384
Disclosure Date: October 19, 2023 (last updated February 25, 2025)
KnowBand supercheckout > 5.0.7 and < 6.0.7 is vulnerable to Unrestricted Upload of File with Dangerous Type. In the module "Module One Page Checkout, Social Login & Mailchimp" (supercheckout), a guest can upload files with extensions .php
0