Show filters
194 Total Results
Displaying 131-140 of 194
Sort by:
Attacker Value
Unknown

CVE-2019-19985

Disclosure Date: February 28, 2019 (last updated November 27, 2024)
The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a flaw that allowed unauthenticated file download with user information disclosure.
Attacker Value
Unknown

CVE-2018-1002007

Disclosure Date: December 03, 2018 (last updated November 27, 2024)
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit. There is an XSS vulnerability in integration-contact-form.html.php:15: via POST request variable html_id.
0
Attacker Value
Unknown

CVE-2018-1002001

Disclosure Date: December 03, 2018 (last updated November 27, 2024)
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit.
0
Attacker Value
Unknown

CVE-2018-1002002

Disclosure Date: December 03, 2018 (last updated November 27, 2024)
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit.
0
Attacker Value
Unknown

CVE-2018-1002006

Disclosure Date: December 03, 2018 (last updated November 27, 2024)
These vulnerabilities require administrative privileges to exploit. There is an XSS vulnerability in integration-contact-form.html.php:14: via POST request variable classes
0
Attacker Value
Unknown

CVE-2018-1002008

Disclosure Date: December 03, 2018 (last updated November 27, 2024)
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit. There is an XSS vulnerability in list-user.html.php:4: via GET request offset variable.
0
Attacker Value
Unknown

CVE-2018-1002000

Disclosure Date: December 03, 2018 (last updated November 27, 2024)
There is blind SQL injection in WordPress Arigato Autoresponder and Newsletter v2.5.1.8 These vulnerabilities require administrative privileges to exploit. There is an exploitable blind SQL injection vulnerability via the del_ids variable by POST request.
0
Attacker Value
Unknown

CVE-2018-1002004

Disclosure Date: December 03, 2018 (last updated November 27, 2024)
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit.
0
Attacker Value
Unknown

CVE-2018-1002009

Disclosure Date: December 03, 2018 (last updated November 27, 2024)
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit. There is an XSS vulnerability in unsubscribe.html.php:3: via GET reuqest to the email variable.
0
Attacker Value
Unknown

CVE-2018-1002003

Disclosure Date: December 03, 2018 (last updated November 27, 2024)
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit.
0