Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown
CVE-2023-38383
Disclosure Date: December 13, 2024 (last updated December 18, 2024)
Missing Authorization vulnerability in OnTheGoSystems Language allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Language: from n/a through 1.2.1.
0
Attacker Value
Unknown
CVE-2023-29431
Disclosure Date: December 09, 2024 (last updated December 21, 2024)
Missing Authorization vulnerability in OntheGoSystems qTranslate X Cleanup and WPML Import allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects qTranslate X Cleanup and WPML Import: from n/a through 3.0.1.
0
Attacker Value
Unknown
CVE-2024-44006
Disclosure Date: November 01, 2024 (last updated November 09, 2024)
Missing Authorization vulnerability in OnTheGoSystems WooCommerce Multilingual & Multicurrency multilingual allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WooCommerce Multilingual & Multicurrency: from n/a through 5.3.6.
0
Attacker Value
Unknown
CVE-2024-30466
Disclosure Date: June 09, 2024 (last updated October 09, 2024)
Missing Authorization vulnerability in OnTheGoSystems WooCommerce Multilingual & Multicurrency.This issue affects WooCommerce Multilingual & Multicurrency: from n/a through 5.3.4.
0
Attacker Value
Unknown
CVE-2024-32602
Disclosure Date: April 18, 2024 (last updated April 18, 2024)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OnTheGoSystems WooCommerce Multilingual & Multicurrency.This issue affects WooCommerce Multilingual & Multicurrency: from n/a through 5.3.3.1.
0
Attacker Value
Unknown
CVE-2023-27440
Disclosure Date: March 26, 2024 (last updated April 02, 2024)
Unrestricted Upload of File with Dangerous Type vulnerability in OnTheGoSystems Types.This issue affects Types: from n/a through 3.4.17.
0
Attacker Value
Unknown
CVE-2020-10568
Disclosure Date: March 14, 2020 (last updated November 08, 2023)
The sitepress-multilingual-cms (WPML) plugin before 4.3.7-b.2 for WordPress has CSRF due to a loose comparison. This leads to remote code execution in includes/class-wp-installer.php via a series of requests that leverage unintended comparisons of integers to strings.
0
Attacker Value
Unknown
CVE-2015-9416
Disclosure Date: September 26, 2019 (last updated November 27, 2024)
The sitepress-multilingual-cms (WPML) plugin 2.9.3 to 3.2.6 for WordPress has XSS via the Accept-Language HTTP header.
0