Show filters
36 Total Results
Displaying 31-36 of 36
Sort by:
Attacker Value
Unknown

CVE-2021-24633

Disclosure Date: September 27, 2021 (last updated February 23, 2025)
The Countdown Block WordPress plugin before 1.1.2 does not have authorisation in the eb_write_block_css AJAX action, which allows any authenticated user, such as Subscriber, to modify post contents displayed to users.
Attacker Value
Unknown

CVE-2021-34636

Disclosure Date: September 27, 2021 (last updated February 23, 2025)
The Countdown and CountUp, WooCommerce Sales Timers WordPress plugin is vulnerable to Cross-Site Request Forgery via the save_theme function found in the ~/includes/admin/coundown_theme_page.php file due to a missing nonce check which allows attackers to inject arbitrary web scripts, in versions up to and including 1.5.7.
0
Attacker Value
Unknown

CVE-2016-10900

Disclosure Date: August 21, 2019 (last updated November 27, 2024)
The uji-countdown plugin before 2.0.7 for WordPress has XSS.
0
Attacker Value
Unknown

CVE-2013-4383

Disclosure Date: January 31, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the jQuery Countdown module 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the "access administration pages" permission to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2008-6492

Disclosure Date: March 20, 2009 (last updated October 04, 2023)
Unrestricted file upload vulnerability in process.php in Tizag Countdown Creator 3 allows remote attackers to execute arbitrary code by uploading a file with an executable extension via index.php, then accessing the uploaded file via a direct request to the file in pics/. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-0789

Disclosure Date: February 15, 2008 (last updated October 04, 2023)
SQL injection vulnerability in countdown.php in LI-Scripts LI-Countdown allows remote attackers to execute arbitrary SQL commands via the years parameter.
0