Show filters
524 Total Results
Displaying 81-90 of 524
Sort by:
Attacker Value
Unknown

CVE-2023-51667

Disclosure Date: June 04, 2024 (last updated June 05, 2024)
Authentication Bypass by Spoofing vulnerability in FeedbackWP Rate my Post – WP Rating System allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Rate my Post – WP Rating System: from n/a through 3.4.2.
0
Attacker Value
Unknown

CVE-2023-40332

Disclosure Date: June 04, 2024 (last updated June 04, 2024)
Improper Control of Interaction Frequency vulnerability in Lester ‘GaMerZ’ Chan WP-PostRatings allows Functionality Misuse.This issue affects WP-PostRatings: from n/a through 1.91.
0
Attacker Value
Unknown

CVE-2024-5218

Disclosure Date: May 25, 2024 (last updated May 25, 2024)
The Reviews and Rating – Google Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's file upload feature in all versions up to, and including, 5.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
0
Attacker Value
Unknown

CVE-2024-3609

Disclosure Date: May 16, 2024 (last updated January 05, 2025)
The ReviewX – Multi-criteria Rating & Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized deletion of data due to a missing capability check on the reviewx_remove_guest_image function in all versions up to, and including, 1.6.27. This makes it possible for authenticated attackers, with subscriber access and above, to delete attachments.
0
Attacker Value
Unknown

CVE-2023-32127

Disclosure Date: April 24, 2024 (last updated April 25, 2024)
Missing Authorization vulnerability in Daniel Powney Multi Rating allows Functionality Misuse.This issue affects Multi Rating: from n/a through 5.0.6.
0
Attacker Value
Unknown

CVE-2023-25785

Disclosure Date: April 24, 2024 (last updated April 25, 2024)
Missing Authorization vulnerability in Shoaib Saleem WP Post Rating allows Functionality Misuse.This issue affects WP Post Rating: from n/a through 2.5.
0
Attacker Value
Unknown

CVE-2024-32823

Disclosure Date: April 24, 2024 (last updated April 24, 2024)
Authorization Bypass Through User-Controlled Key vulnerability in FeedbackWP Rate my Post – WP Rating System.This issue affects Rate my Post – WP Rating System: from n/a through 3.4.4.
0
Attacker Value
Unknown

CVE-2024-21105

Disclosure Date: April 16, 2024 (last updated December 21, 2024)
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Solaris accessible data. CVSS 3.1 Base Score 2.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N).
0
Attacker Value
Unknown

CVE-2024-31358

Disclosure Date: April 10, 2024 (last updated April 11, 2024)
Missing Authorization vulnerability in Saleswonder.Biz 5 Stars Rating Funnel.This issue affects 5 Stars Rating Funnel: from n/a through 1.2.67.
0
Attacker Value
Unknown

CVE-2011-10006

Disclosure Date: April 08, 2024 (last updated April 11, 2024)
A vulnerability was found in GamerZ WP-PostRatings up to 1.64. It has been classified as problematic. This affects an unknown part of the file wp-postratings.php. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. Upgrading to version 1.65 is able to address this issue. The identifier of the patch is 6182a5682b12369ced0becd3b505439ce2eb8132. It is recommended to upgrade the affected component. The identifier VDB-259629 was assigned to this vulnerability.
0