WordPress Contact Form plugin version 1.7.14 suffers from a cross site scripting vulnerability.
>> CATEGORY: exploit
WordPress TranslatePress plugin version 2.0.8 suffers from a persistent cross site scripting vulnerability.
WordPress Popup plugin version 1.10.4 suffers from a cross site scripting vulnerability.
WordPress Ultimate Maps plugin version 1.2.4 suffers from a cross site scripting vulnerability.
Apache James Server version 2.3.2 remote command execution exploit.
The application interface FatPipe Networks WARP/IPVPN/MPVPN version 10.2.2 allows users to perform certain actions via HTTP requests without performing any validity checks to verify the requests. This can be exploited…
FatPipe Networks WARP version 10.2.2 suffers from an authorization bypass vulnerability.
FatPipe Networks WARP/IPVPN/MPVPN version 10.2.2 has the hidden administrative account cmuser that has no password and has write access permissions to the device. The user cmuser is not visible in…
FatPipe Networks WARP/IPVPN/MPVPN version 10.2.2 is vulnerable to an unauthenticated configuration disclosure when a direct object reference is made to the backup archive file using an HTTP GET request.
FatPipe Networks WARP/IPVPN/MPVPN version 10.2.2 suffers from a remote privilege escalation vulnerability.