Show filters
54 Total Results
Displaying 51-54 of 54
Sort by:
Attacker Value
Unknown
CVE-2018-1000511
Disclosure Date: June 26, 2018 (last updated November 26, 2024)
WP ULike version 2.8.1, 3.1 contains a Incorrect Access Control vulnerability in AJAX that can result in allows anybody to delete any row in certain tables. This attack appear to be exploitable via Attacker must make AJAX request. This vulnerability appears to have been fixed in 3.2.
0
Attacker Value
Unknown
CVE-2018-6610
Disclosure Date: February 05, 2018 (last updated November 26, 2024)
Information Leakage exists in the jLike 1.0 component for Joomla! via a task=getUserByCommentId request.
0
Attacker Value
Unknown
CVE-2014-9524
Disclosure Date: January 05, 2015 (last updated October 05, 2023)
Multiple cross-site request forgery (CSRF) vulnerabilities in the Facebook Like Box (cardoza-facebook-like-box) plugin before 2.8.3 for WordPress allow remote attackers to hijack the authentication of administrators for requests that (1) change plugin settings via unspecified vectors or conduct cross-site scripting (XSS) attacks via the (2) frm_title, (3) frm_url, (4) frm_border_color, (5) frm_width, or (6) frm_height parameter in the slug_for_fb_like_box page to wp-admin/admin.php.
0
Attacker Value
Unknown
CVE-2008-6237
Disclosure Date: February 23, 2009 (last updated October 04, 2023)
SQL injection vulnerability in software-description.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote attackers to execute arbitrary SQL commands via the id parameter.
0