You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
39301,platforms/php/webapps/39301.html,"WordPress Ninja Forms Plugin Authorization Bypass Vulnerability",2014-09-08,Voxel@Night,php,webapps,0
35545
+
39302,platforms/php/webapps/39302.html,"WordPress WP to Twitter Plugin Authorization Bypass Vulnerability",2014-09-08,Voxel@Night,php,webapps,0
35546
+
39303,platforms/php/webapps/39303.txt,"WordPress Xhanch My Twitter Plugin Cross Site Request Forgery Vulnerability",2014-09-08,Voxel@Night,php,webapps,0
35547
+
39304,platforms/php/webapps/39304.txt,"WordPress W3 Total Cache Plugin 'admin.php' Cross Site Request Forgery Vulnerability",2014-09-08,Voxel@Night,php,webapps,0
Spider Facebook plugin for WordPress is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
4
+
5
+
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
6
+
7
+
Spider Facebook 1.0.8 is vulnerable; other versions may also be affected.
8
+
9
+
http://www.example.com/wordpress/wp-admin/admin.php?page=Spider_Facebook_manage&task=Spider_Facebook_edit&id=1 and 1=2
The Ninja Forms Plugin for WordPress is prone to an authorization-bypass vulnerability.
4
+
5
+
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions; this may aid in launching further attacks.
6
+
7
+
Ninja Forms Plugin 2.7.7 is vulnerable; other versions may also be affected.
WP to Twitter Plugin for WordPress is prone to an authorization-bypass vulnerability.
4
+
5
+
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions; this may aid in launching further attacks.
6
+
7
+
WP to Twitter 2.9.3 is vulnerable; other versions may also be affected.
Xhanch My Twitter plugin for WordPress is prone to a cross-site request-forgery vulnerability.
4
+
5
+
An attacker can exploit the cross-site request forgery issue to perform unauthorized actions in the context of a logged-in user of the affected application. This may aid in other attacks.
6
+
7
+
Xhanch My Twitter 2.7.7 is vulnerable; other versions may also be affected.
W3 Total Cache plugin for WordPress is prone to a cross-site request-forgery vulnerability.
4
+
5
+
An attacker can exploit the cross-site request forgery issue to perform unauthorized actions in the context of a logged-in user of the affected application. This may aid in other attacks.
6
+
7
+
W3 Total Cache 0.9.4 is vulnerable; other versions may also be affected.
0 commit comments