Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown

CVE-2024-0216

Disclosure Date: April 30, 2024 (last updated January 05, 2025)
The Google Doc Embedder plugin for WordPress is vulnerable to Server Side Request Forgery via the 'gview' shortcode in versions up to, and including, 2.6.4. This can allow authenticated attackers with contributor-level permissions or above to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.
0
Attacker Value
Unknown

CVE-2016-10880

Disclosure Date: August 14, 2019 (last updated November 27, 2024)
The google-document-embedder plugin before 2.6.1 for WordPress has XSS.
0
Attacker Value
Unknown

CVE-2016-10882

Disclosure Date: August 14, 2019 (last updated November 27, 2024)
The google-document-embedder plugin before 2.6.2 for WordPress has CSRF.
0
Attacker Value
Unknown

CVE-2016-10881

Disclosure Date: August 14, 2019 (last updated November 27, 2024)
The google-document-embedder plugin before 2.6.2 for WordPress has XSS.
0
Attacker Value
Unknown

CVE-2015-1879

Disclosure Date: February 19, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the Google Doc Embedder plugin before 2.5.19 for WordPress allows remote attackers to inject arbitrary web script or HTML via the profile parameter in an edit action in the gde-settings page to wp-admin/options-general.php.
0
Attacker Value
Unknown

CVE-2014-9173

Disclosure Date: December 02, 2014 (last updated October 05, 2023)
SQL injection vulnerability in view.php in the Google Doc Embedder plugin before 2.5.15 for WordPress allows remote attackers to execute arbitrary SQL commands via the gpid parameter.
0
Attacker Value
Unknown

CVE-2012-4915

Disclosure Date: May 29, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in the Google Doc Embedder plugin before 2.5.4 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to libs/pdf.php.
0