Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Very Low

CVE-2024-31077

Disclosure Date: April 23, 2024 (last updated April 23, 2024)
Forminator prior to 1.29.3 contains a SQL injection vulnerability. If this vulnerability is exploited, a remote authenticated attacker with an administrative privilege may obtain and alter any information in the database and cause a denial-of-service (DoS) condition.
1
Attacker Value
Unknown

CVE-2024-43118

Disclosure Date: November 01, 2024 (last updated November 02, 2024)
Missing Authorization vulnerability in WPMU DEV Hummingbird allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Hummingbird: from n/a through 3.9.1.
0
Attacker Value
Unknown

CVE-2024-37444

Disclosure Date: November 01, 2024 (last updated November 02, 2024)
Missing Authorization vulnerability in WPMU DEV Defender Security allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Defender Security: from n/a through 4.7.1.
0
Attacker Value
Unknown

CVE-2024-32792

Disclosure Date: June 09, 2024 (last updated June 10, 2024)
Missing Authorization vulnerability in WPMU DEV Hummingbird.This issue affects Hummingbird: from n/a through 3.7.3.
0
Attacker Value
Unknown

CVE-2023-51542

Disclosure Date: June 04, 2024 (last updated June 05, 2024)
Authentication Bypass by Spoofing vulnerability in WPMU DEV Branda allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Branda: from n/a through 3.4.14.
0
Attacker Value
Unknown

CVE-2023-47189

Disclosure Date: June 04, 2024 (last updated June 04, 2024)
Improper Authentication vulnerability in WPMU DEV Defender Security allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Defender Security: from n/a through 4.2.0.
0
Attacker Value
Unknown

CVE-2024-25595

Disclosure Date: May 17, 2024 (last updated May 17, 2024)
Authentication Bypass by Spoofing vulnerability in WPMU DEV Defender Security allows Functionality Bypass.This issue affects Defender Security: from n/a through 4.4.1.
0
Attacker Value
Unknown

CVE-2022-44581

Disclosure Date: May 17, 2024 (last updated May 17, 2024)
Insecure Storage of Sensitive Information vulnerability in WPMU DEV Defender Security allows : Screen Temporary Files for Sensitive Information.This issue affects Defender Security: from n/a through 3.3.2.
0
Attacker Value
Unknown

CVE-2024-31857

Disclosure Date: April 23, 2024 (last updated April 23, 2024)
Forminator prior to 1.15.4 contains a cross-site scripting vulnerability. If this vulnerability is exploited, a remote attacker may obtain user information etc. and alter the page contents on the user's web browser.
0
Attacker Value
Unknown

CVE-2024-28890

Disclosure Date: April 23, 2024 (last updated April 23, 2024)
Forminator prior to 1.29.0 contains an unrestricted upload of file with dangerous type vulnerability. If this vulnerability is exploited, a remote attacker may obtain sensitive information by accessing files on the server, alter the site that uses the plugin, and cause a denial-of-service (DoS) condition.
0