Extension WordPress
Vulnérabilités DTracker
Cette page rassemble les failles publiées pour DTracker, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de DTracker
4 fiches
Dtracker <= 1.5 – Missing Authorization
Vulnerability in wordpress plugin DTracker v1.5, The code dtracker/save_contact.php doesn't check that the user is authorized before injecting new contacts into the wp_contact table.
*-1.5
Non indiqué
13/03/2017
DTracker <= 1.5 – SQL Injection
Vulnerability in wordpress plugin DTracker v1.5, In file ./dtracker/download.php user input isn't sanitized via the id variable before adding it to the end of an SQL query.
*-1.5
Non indiqué
08/03/2017
DTracker <= 1.5 – Authorization Bypass
Vulnerability in wordpress plugin DTracker v1.5, The code dtracker/save_mail.php doesn't check that the user is authorized before injecting new contacts into the wp_contact table.
*-1.5
Non indiqué
08/03/2017
DTracker <= 1.5 – SQL Injection
Vulnerability in wordpress plugin DTracker v1.5, In file ./dtracker/delete.php user input isn't sanitized via the contact_id variable before adding it to the end of an SQL query.
*-1.5
Non indiqué
08/03/2017
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.