Show filters
30 Total Results
Displaying 21-30 of 30
Sort by:
Attacker Value
Unknown
CVE-2022-0429
Disclosure Date: March 07, 2022 (last updated February 23, 2025)
The WP Cerber Security, Anti-spam & Malware Scan WordPress plugin before 8.9.6 does not sanitise the $url variable before using it in an attribute in the Activity tab in the plugins dashboard, leading to an unauthenticated stored Cross-Site Scripting vulnerability.
0
Attacker Value
Unknown
CVE-2021-24131
Disclosure Date: March 18, 2021 (last updated February 22, 2025)
Unvalidated input in the Anti-Spam by CleanTalk WordPress plugin, versions before 5.149, lead to multiple authenticated SQL injection vulnerabilities, however, it requires high privilege user (admin+).
0
Attacker Value
Unknown
CVE-2017-16659
Disclosure Date: November 08, 2017 (last updated November 26, 2024)
The Gentoo mail-filter/assp package 1.9.8.13030 and earlier allows local users to gain privileges by leveraging access to the assp user account to install a Trojan horse /usr/share/assp/assp.pl script.
0
Attacker Value
Unknown
CVE-2014-5190
Disclosure Date: August 07, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in captcha-secureimage/test/index.php in the SI CAPTCHA Anti-Spam plugin 2.7.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.
0
Attacker Value
Unknown
CVE-2008-7216
Disclosure Date: September 11, 2009 (last updated October 04, 2023)
Peter's Math Anti-Spam Spinoff plugin for WordPress generates audio CAPTCHA clips by concatenating static audio files without any additional distortion, which allows remote attackers to bypass CAPTCHA protection by reading certain bytes from the generated clip.
0
Attacker Value
Unknown
CVE-2008-3082
Disclosure Date: July 09, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in UPM/English/login/login.asp in Commtouch Enterprise Anti-Spam Gateway 4 and 5 allows remote attackers to inject arbitrary web script or HTML via the PARAMS parameter.
0
Attacker Value
Unknown
CVE-2007-6677
Disclosure Date: January 10, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Peter's Random Anti-Spam Image 0.2.4 and earlier plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the comment field in the comment form.
0
Attacker Value
Unknown
CVE-2007-4206
Disclosure Date: August 08, 2007 (last updated October 04, 2023)
Kaspersky Anti-Spam 3.0 MP1 before Critical Fix 2 (3.0.278.4) sets incorrect permissions for application files in certain upgrade scenarios, which might allow local users to gain privileges.
0
Attacker Value
Unknown
CVE-2007-3502
Disclosure Date: June 30, 2007 (last updated October 04, 2023)
Unspecified vulnerability in the web-based product configuration system in Kaspersky Anti-Spam before 3.0 MP1 allows remote attackers to obtain access to certain directories.
0
Attacker Value
Unknown
CVE-2006-4258
Disclosure Date: August 21, 2006 (last updated October 04, 2023)
Absolute path traversal vulnerability in the get functionality in Anti-Spam SMTP Proxy (ASSP) allows remote authenticated users to read arbitrary files via (1) C:\ (Windows drive letter), (2) UNC, and possibly other types of paths in the file parameter.
0