Extension WordPress

Vulnérabilités CMS Commander – Manage Multiple Sites

Cette page rassemble les failles publiées pour CMS Commander – Manage Multiple Sites, leurs plages de versions affectées et les correctifs signalés dans la base locale.

3Vulnérabilités
0Critiques
2Avec correctif
8,8CVSS maximal

Historique de sécurité

CVE et vulnérabilités de CMS Commander – Manage Multiple Sites

3 fiches

CVE-2026-3334 Élevée · 8,8
CMS Commander – Manage Multiple Sites

CMS Commander <= 2.288 – Authenticated (Custom+) SQL Injection via 'or_blogname' Parameter

The CMS Commander plugin for WordPress is vulnerable to SQL Injection via the 'or_blogname', 'or_blogdescription', and 'or_admin_email' parameters in all versions up to, and including, 2.288. This is due to insufficient escaping on the user supplied parameters and…

Versions affectées

*-2.288

Correctif

Non indiqué

Publication

20/03/2026

CVE-2023-3325 Élevée · 8,1
CMS Commander – Manage Multiple Sites

CMS Commander <= 2.287 – Authorization Bypass through Use of Insufficiently Unique Cryptographic Signature

The CMS Commander plugin for WordPress is vulnerable to authorization bypass due to the use of an insufficiently unique cryptographic signature on the 'cmsc_add_site' function in versions up to, and including, 2.287. This makes it possible for unauthenticated…

Versions affectées

*-2.287

Correctif

2.288

Publication

19/06/2023

Vulnérabilité Élevée · 8,5
CMS Commander – Manage Multiple Sites

CMS Commander – Manage Multiple Sites Plugin <= 2.21 – PHP Object Injection

The CMS Commander – Manage Multiple Sites plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 2.21 via deserialization of untrusted input in the cmsc_authenticate() function. This allows unauthenticated attackers to inject…

Versions affectées

[*, 2.22)

Correctif

2.22

Publication

01/06/2016

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités