Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2019-15330

Disclosure Date: August 22, 2019 (last updated November 27, 2024)
The webp-express plugin before 0.14.11 for WordPress has insufficient protection against arbitrary file reading.
0
Attacker Value
Unknown

CVE-2004-2210

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in Express-Web Content Management System (CMS) allow remote attackers to steal cookie-based authentication information and possibly perform other exploits via the (1) n, (2) b, (3) e, or (4) a parameters to default.asp, (5) the Referer header in an HTTP request to login.asp, or (6) the email parameter to subscribe/default.asp.
0
Attacker Value
Unknown

CVE-2000-0104

Disclosure Date: February 01, 2000 (last updated February 22, 2025)
The Shoptron shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
0