Extension WordPress

Vulnérabilités AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth

Cette page rassemble les failles publiées pour AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth, leurs plages de versions affectées et les correctifs signalés dans la base locale.

3Vulnérabilités
0Critiques
3Avec correctif
7,2CVSS maximal

Historique de sécurité

CVE et vulnérabilités de AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth

3 fiches

CVE-2024-13313 Moyenne · 4,4
AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth

AWeber <= 7.3.20 – Authenticated (Admin+) Stored Cross-Site Scripting

The AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including,…

Versions affectées

*-7.3.20

Correctif

7.3.21

Publication

06/03/2025

CVE-2024-1793 Élevée · 7,2
AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth

AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth By AWeber <= 7.3.14 – Authenticated (Admin+) SQL Injection

The AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth plugin for WordPress is vulnerable to SQL Injection via the 'post_id' parameter in all versions up to, and including,…

Versions affectées

*-7.3.14

Correctif

7.3.15

Publication

29/02/2024

CVE-2023-47757 Moyenne · 6,3
AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth

AWeber <= 7.3.9 – Missing Authorization via AJAX actions

The AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on…

Versions affectées

*-7.3.9

Correctif

7.3.10

Publication

13/11/2023

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités