Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: cms Clear
ID Title
CVE-2017-1002005 SQL Injection in wordpress (CVE-2017-1002005)
SQL injection in wordpress (CVE-2017-1002005). Data can be tampered with by attackers.
CVE-2017-1002006 Vulnerability in wordpress (CVE-2017-1002006)
vulnerability in wordpress (CVE-2017-1002006). Data can be tampered with by attackers.
CVE-2017-1002007 Vulnerability in wordpress (CVE-2017-1002007)
vulnerability in wordpress (CVE-2017-1002007). Data can be tampered with by attackers.
CVE-2015-9228 Unrestricted File Upload in wordpress (CVE-2015-9228)
vulnerability in wordpress (CVE-2015-9228). Successful exploitation can lead to full system takeover.
CVE-2017-14251 Unrestricted File Upload in typo3 (CVE-2017-14251)
vulnerability in typo3 (CVE-2017-14251). Successful exploitation can lead to full system takeover.
CVE-2015-3314 SQL injection vulnerability in WordPress Tune Library plugin before 1.5.5.
SQL injection vulnerability in WordPress Tune Library plugin before 1.5.5.
CVE-2015-4697 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2015-4697)
vulnerability in wordpress (CVE-2015-4697). Successful exploitation can lead to full system takeover.
CVE-2017-12977 SQL Injection in wordpress (CVE-2017-12977)
SQL injection in wordpress (CVE-2017-12977). Successful exploitation can lead to full system takeover.
CVE-2017-12946 SQL Injection in wordpress (CVE-2017-12946)
SQL injection in wordpress (CVE-2017-12946). Successful exploitation can lead to full system takeover.
CVE-2017-12947 SQL Injection in wordpress (CVE-2017-12947)
SQL injection in wordpress (CVE-2017-12947). Successful exploitation can lead to full system takeover.
CVE-2017-12949 SQL Injection in wordpress (CVE-2017-12949)
SQL injection in wordpress (CVE-2017-12949). Successful exploitation can lead to full system takeover.
CVE-2014-9260 Vulnerability in wordpress (CVE-2014-9260)
vulnerability in wordpress (CVE-2014-9260). Successful exploitation can lead to full system takeover.
CVE-2014-9262 Vulnerability in wordpress (CVE-2014-9262)
vulnerability in wordpress (CVE-2014-9262). Confidential information can be exposed externally.
CVE-2017-12651 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-12651)
vulnerability in wordpress (CVE-2017-12651). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
CVE-2015-7875 Vulnerability in drupal (CVE-2015-7875)
vulnerability in drupal (CVE-2015-7875). Data can be tampered with by attackers.
CVE-2017-11364 Vulnerability in joomla (CVE-2017-11364)
vulnerability in joomla (CVE-2017-11364). Successful exploitation can lead to full system takeover.
CVE-2017-11658 Path Traversal in wordpress (CVE-2017-11658)
path traversal in wordpress (CVE-2017-11658). Confidential information can be exposed externally.
CVE-2017-9933 Information Disclosure in joomla (CVE-2017-9933)
vulnerability in joomla (CVE-2017-9933). Confidential information can be exposed externally.
CVE-2017-9429 SQL Injection in wordpress (CVE-2017-9429)
SQL injection in wordpress (CVE-2017-9429). Successful exploitation can lead to full system takeover.
CVE-2017-9603 SQL Injection in wordpress (CVE-2017-9603)
SQL injection in wordpress (CVE-2017-9603). Successful exploitation can lead to full system takeover.
CVE-2017-9418 SQL Injection in wordpress (CVE-2017-9418)
SQL injection in wordpress (CVE-2017-9418). Successful exploitation can lead to full system takeover.
CVE-2015-3634 Information Disclosure in wordpress (CVE-2015-3634)
vulnerability in wordpress (CVE-2015-3634). Confidential information can be exposed externally.
CVE-2015-4704 Path Traversal in wordpress (CVE-2015-4704)
path traversal in wordpress (CVE-2015-4704). Confidential information can be exposed externally.
CVE-2015-5468 Path Traversal in wordpress (CVE-2015-5468)
path traversal in wordpress (CVE-2015-5468). Confidential information can be exposed externally.
CVE-2015-5469 Path Traversal in wordpress (CVE-2015-5469)
path traversal in wordpress (CVE-2015-5469). Confidential information can be exposed externally.
CVE-2015-5682 Vulnerability in wordpress (CVE-2015-5682)
vulnerability in wordpress (CVE-2015-5682). Data can be tampered with by attackers.
CVE-2016-4904 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2016-4904)
vulnerability in wordpress (CVE-2016-4904). Successful exploitation can lead to full system takeover.
CVE-2017-9062 In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API.
In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API.
CVE-2017-9064 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-9064)
vulnerability in wordpress (CVE-2017-9064). Successful exploitation can lead to full system takeover.
CVE-2017-9065 Vulnerability in wordpress (CVE-2017-9065)
vulnerability in wordpress (CVE-2017-9065). Data can be tampered with by attackers.
CVE-2017-9066 SSRF (Server-Side Request Forgery) in wordpress (CVE-2017-9066)
SSRF in wordpress (CVE-2017-9066). Data can be tampered with by attackers.
CVE-2017-8099 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-8099)
vulnerability in wordpress (CVE-2017-8099). Data can be tampered with by attackers.
CVE-2017-6919 Vulnerability in drupal (CVE-2017-6919)
vulnerability in drupal (CVE-2017-6919). Successful exploitation can lead to full system takeover.
CVE-2017-1001000 Vulnerability in wordpress (CVE-2017-1001000)
vulnerability in wordpress (CVE-2017-1001000). Data can be tampered with by attackers.
CVE-2017-6377 Authorization Flaw in drupal (CVE-2017-6377)
vulnerability in drupal (CVE-2017-6377). Data can be tampered with by attackers.
CVE-2017-6379 Cross-Site Request Forgery (CSRF) in drupal (CVE-2017-6379)
vulnerability in drupal (CVE-2017-6379). Successful exploitation can lead to full system takeover.
CVE-2017-6381 Vulnerability in drupal (CVE-2017-6381)
vulnerability in drupal (CVE-2017-6381). Successful exploitation can lead to full system takeover.
CVE-2017-6570 SQL Injection in wordpress (CVE-2017-6570)
SQL injection in wordpress (CVE-2017-6570). Successful exploitation can lead to full system takeover.
CVE-2017-6571 SQL Injection in wordpress (CVE-2017-6571)
SQL injection in wordpress (CVE-2017-6571). Successful exploitation can lead to full system takeover.
CVE-2017-6572 SQL Injection in wordpress (CVE-2017-6572)
SQL injection in wordpress (CVE-2017-6572). Successful exploitation can lead to full system takeover.
CVE-2017-6573 SQL Injection in wordpress (CVE-2017-6573)
SQL injection in wordpress (CVE-2017-6573). Successful exploitation can lead to full system takeover.
CVE-2017-6574 SQL Injection in wordpress (CVE-2017-6574)
SQL injection in wordpress (CVE-2017-6574). Successful exploitation can lead to full system takeover.
CVE-2017-6575 SQL Injection in wordpress (CVE-2017-6575)
SQL injection in wordpress (CVE-2017-6575). Successful exploitation can lead to full system takeover.
CVE-2017-6576 SQL Injection in wordpress (CVE-2017-6576)
SQL injection in wordpress (CVE-2017-6576). Successful exploitation can lead to full system takeover.
CVE-2017-6577 SQL Injection in wordpress (CVE-2017-6577)
SQL injection in wordpress (CVE-2017-6577). Successful exploitation can lead to full system takeover.
CVE-2017-6578 SQL Injection in wordpress (CVE-2017-6578)
SQL injection in wordpress (CVE-2017-6578). Successful exploitation can lead to full system takeover.
CVE-2017-6104 Remote file upload vulnerability in Wordpress Plugin Mobile App Native 3.0.
Remote file upload vulnerability in Wordpress Plugin Mobile App Native 3.0.
CVE-2016-6485 Vulnerability in magento (CVE-2016-6485)
vulnerability in magento (CVE-2016-6485). Confidential information can be exposed externally.
CVE-2017-6096 SQL Injection in wordpress (CVE-2017-6096)
SQL injection in wordpress (CVE-2017-6096). Successful exploitation can lead to full system takeover.
CVE-2017-6097 SQL Injection in wordpress (CVE-2017-6097)
SQL injection in wordpress (CVE-2017-6097). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →