Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-1002005 |
|
SQL Injection in wordpress (CVE-2017-1002005)
SQL injection in wordpress (CVE-2017-1002005). Data can be tampered with by attackers.
|
| CVE-2017-1002006 |
|
Vulnerability in wordpress (CVE-2017-1002006)
vulnerability in wordpress (CVE-2017-1002006). Data can be tampered with by attackers.
|
| CVE-2017-1002007 |
|
Vulnerability in wordpress (CVE-2017-1002007)
vulnerability in wordpress (CVE-2017-1002007). Data can be tampered with by attackers.
|
| CVE-2015-9228 |
|
Unrestricted File Upload in wordpress (CVE-2015-9228)
vulnerability in wordpress (CVE-2015-9228). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14251 |
|
Unrestricted File Upload in typo3 (CVE-2017-14251)
vulnerability in typo3 (CVE-2017-14251). Successful exploitation can lead to full system takeover.
|
| CVE-2015-3314 |
|
SQL injection vulnerability in WordPress Tune Library plugin before 1.5.5.
SQL injection vulnerability in WordPress Tune Library plugin before 1.5.5.
|
| CVE-2015-4697 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2015-4697)
vulnerability in wordpress (CVE-2015-4697). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12977 |
|
SQL Injection in wordpress (CVE-2017-12977)
SQL injection in wordpress (CVE-2017-12977). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12946 |
|
SQL Injection in wordpress (CVE-2017-12946)
SQL injection in wordpress (CVE-2017-12946). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12947 |
|
SQL Injection in wordpress (CVE-2017-12947)
SQL injection in wordpress (CVE-2017-12947). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12949 |
|
SQL Injection in wordpress (CVE-2017-12949)
SQL injection in wordpress (CVE-2017-12949). Successful exploitation can lead to full system takeover.
|
| CVE-2014-9260 |
|
Vulnerability in wordpress (CVE-2014-9260)
vulnerability in wordpress (CVE-2014-9260). Successful exploitation can lead to full system takeover.
|
| CVE-2014-9262 |
|
Vulnerability in wordpress (CVE-2014-9262)
vulnerability in wordpress (CVE-2014-9262). Confidential information can be exposed externally.
|
| CVE-2017-12651 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-12651)
vulnerability in wordpress (CVE-2017-12651). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
|
| CVE-2015-7875 |
|
Vulnerability in drupal (CVE-2015-7875)
vulnerability in drupal (CVE-2015-7875). Data can be tampered with by attackers.
|
| CVE-2017-11364 |
|
Vulnerability in joomla (CVE-2017-11364)
vulnerability in joomla (CVE-2017-11364). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11658 |
|
Path Traversal in wordpress (CVE-2017-11658)
path traversal in wordpress (CVE-2017-11658). Confidential information can be exposed externally.
|
| CVE-2017-9933 |
|
Information Disclosure in joomla (CVE-2017-9933)
vulnerability in joomla (CVE-2017-9933). Confidential information can be exposed externally.
|
| CVE-2017-9429 |
|
SQL Injection in wordpress (CVE-2017-9429)
SQL injection in wordpress (CVE-2017-9429). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9603 |
|
SQL Injection in wordpress (CVE-2017-9603)
SQL injection in wordpress (CVE-2017-9603). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9418 |
|
SQL Injection in wordpress (CVE-2017-9418)
SQL injection in wordpress (CVE-2017-9418). Successful exploitation can lead to full system takeover.
|
| CVE-2015-3634 |
|
Information Disclosure in wordpress (CVE-2015-3634)
vulnerability in wordpress (CVE-2015-3634). Confidential information can be exposed externally.
|
| CVE-2015-4704 |
|
Path Traversal in wordpress (CVE-2015-4704)
path traversal in wordpress (CVE-2015-4704). Confidential information can be exposed externally.
|
| CVE-2015-5468 |
|
Path Traversal in wordpress (CVE-2015-5468)
path traversal in wordpress (CVE-2015-5468). Confidential information can be exposed externally.
|
| CVE-2015-5469 |
|
Path Traversal in wordpress (CVE-2015-5469)
path traversal in wordpress (CVE-2015-5469). Confidential information can be exposed externally.
|
| CVE-2015-5682 |
|
Vulnerability in wordpress (CVE-2015-5682)
vulnerability in wordpress (CVE-2015-5682). Data can be tampered with by attackers.
|
| CVE-2016-4904 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2016-4904)
vulnerability in wordpress (CVE-2016-4904). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9062 |
|
In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API.
In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API.
|
| CVE-2017-9064 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-9064)
vulnerability in wordpress (CVE-2017-9064). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9065 |
|
Vulnerability in wordpress (CVE-2017-9065)
vulnerability in wordpress (CVE-2017-9065). Data can be tampered with by attackers.
|
| CVE-2017-9066 |
|
SSRF (Server-Side Request Forgery) in wordpress (CVE-2017-9066)
SSRF in wordpress (CVE-2017-9066). Data can be tampered with by attackers.
|
| CVE-2017-8099 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-8099)
vulnerability in wordpress (CVE-2017-8099). Data can be tampered with by attackers.
|
| CVE-2017-6919 |
|
Vulnerability in drupal (CVE-2017-6919)
vulnerability in drupal (CVE-2017-6919). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1001000 |
|
Vulnerability in wordpress (CVE-2017-1001000)
vulnerability in wordpress (CVE-2017-1001000). Data can be tampered with by attackers.
|
| CVE-2017-6377 |
|
Authorization Flaw in drupal (CVE-2017-6377)
vulnerability in drupal (CVE-2017-6377). Data can be tampered with by attackers.
|
| CVE-2017-6379 |
|
Cross-Site Request Forgery (CSRF) in drupal (CVE-2017-6379)
vulnerability in drupal (CVE-2017-6379). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6381 |
|
Vulnerability in drupal (CVE-2017-6381)
vulnerability in drupal (CVE-2017-6381). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6570 |
|
SQL Injection in wordpress (CVE-2017-6570)
SQL injection in wordpress (CVE-2017-6570). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6571 |
|
SQL Injection in wordpress (CVE-2017-6571)
SQL injection in wordpress (CVE-2017-6571). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6572 |
|
SQL Injection in wordpress (CVE-2017-6572)
SQL injection in wordpress (CVE-2017-6572). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6573 |
|
SQL Injection in wordpress (CVE-2017-6573)
SQL injection in wordpress (CVE-2017-6573). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6574 |
|
SQL Injection in wordpress (CVE-2017-6574)
SQL injection in wordpress (CVE-2017-6574). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6575 |
|
SQL Injection in wordpress (CVE-2017-6575)
SQL injection in wordpress (CVE-2017-6575). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6576 |
|
SQL Injection in wordpress (CVE-2017-6576)
SQL injection in wordpress (CVE-2017-6576). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6577 |
|
SQL Injection in wordpress (CVE-2017-6577)
SQL injection in wordpress (CVE-2017-6577). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6578 |
|
SQL Injection in wordpress (CVE-2017-6578)
SQL injection in wordpress (CVE-2017-6578). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6104 |
|
Remote file upload vulnerability in Wordpress Plugin Mobile App Native 3.0.
Remote file upload vulnerability in Wordpress Plugin Mobile App Native 3.0.
|
| CVE-2016-6485 |
|
Vulnerability in magento (CVE-2016-6485)
vulnerability in magento (CVE-2016-6485). Confidential information can be exposed externally.
|
| CVE-2017-6096 |
|
SQL Injection in wordpress (CVE-2017-6096)
SQL injection in wordpress (CVE-2017-6096). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6097 |
|
SQL Injection in wordpress (CVE-2017-6097)
SQL injection in wordpress (CVE-2017-6097). Successful exploitation can lead to full system takeover.
|