Show filters
524 Total Results
Displaying 81-90 of 524
Sort by:
Attacker Value
Unknown
CVE-2023-51667
Disclosure Date: June 04, 2024 (last updated June 05, 2024)
Authentication Bypass by Spoofing vulnerability in FeedbackWP Rate my Post – WP Rating System allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Rate my Post – WP Rating System: from n/a through 3.4.2.
0
Attacker Value
Unknown
CVE-2023-40332
Disclosure Date: June 04, 2024 (last updated June 04, 2024)
Improper Control of Interaction Frequency vulnerability in Lester ‘GaMerZ’ Chan WP-PostRatings allows Functionality Misuse.This issue affects WP-PostRatings: from n/a through 1.91.
0
Attacker Value
Unknown
CVE-2024-5218
Disclosure Date: May 25, 2024 (last updated May 25, 2024)
The Reviews and Rating – Google Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's file upload feature in all versions up to, and including, 5.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
0
Attacker Value
Unknown
CVE-2024-3609
Disclosure Date: May 16, 2024 (last updated January 05, 2025)
The ReviewX – Multi-criteria Rating & Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized deletion of data due to a missing capability check on the reviewx_remove_guest_image function in all versions up to, and including, 1.6.27. This makes it possible for authenticated attackers, with subscriber access and above, to delete attachments.
0
Attacker Value
Unknown
CVE-2023-32127
Disclosure Date: April 24, 2024 (last updated April 25, 2024)
Missing Authorization vulnerability in Daniel Powney Multi Rating allows Functionality Misuse.This issue affects Multi Rating: from n/a through 5.0.6.
0
Attacker Value
Unknown
CVE-2023-25785
Disclosure Date: April 24, 2024 (last updated April 25, 2024)
Missing Authorization vulnerability in Shoaib Saleem WP Post Rating allows Functionality Misuse.This issue affects WP Post Rating: from n/a through 2.5.
0
Attacker Value
Unknown
CVE-2024-32823
Disclosure Date: April 24, 2024 (last updated April 24, 2024)
Authorization Bypass Through User-Controlled Key vulnerability in FeedbackWP Rate my Post – WP Rating System.This issue affects Rate my Post – WP Rating System: from n/a through 3.4.4.
0
Attacker Value
Unknown
CVE-2024-21105
Disclosure Date: April 16, 2024 (last updated December 21, 2024)
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Solaris accessible data. CVSS 3.1 Base Score 2.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N).
0
Attacker Value
Unknown
CVE-2024-31358
Disclosure Date: April 10, 2024 (last updated April 11, 2024)
Missing Authorization vulnerability in Saleswonder.Biz 5 Stars Rating Funnel.This issue affects 5 Stars Rating Funnel: from n/a through 1.2.67.
0
Attacker Value
Unknown
CVE-2011-10006
Disclosure Date: April 08, 2024 (last updated April 11, 2024)
A vulnerability was found in GamerZ WP-PostRatings up to 1.64. It has been classified as problematic. This affects an unknown part of the file wp-postratings.php. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. Upgrading to version 1.65 is able to address this issue. The identifier of the patch is 6182a5682b12369ced0becd3b505439ce2eb8132. It is recommended to upgrade the affected component. The identifier VDB-259629 was assigned to this vulnerability.
0