Extension WordPress

Vulnérabilités GiveWP – Donation Plugin and Fundraising Platform, page 5

Cette page rassemble les failles publiées pour GiveWP – Donation Plugin and Fundraising Platform, leurs plages de versions affectées et les correctifs signalés dans la base locale.

89Vulnérabilités
9Critiques
89Avec correctif
10,0CVSS maximal

Historique de sécurité

CVE et vulnérabilités de GiveWP – Donation Plugin and Fundraising Platform

89 fiches

CVE-2019-13578 Critique · 9,8
GiveWP – Donation Plugin and Fundraising Platform

GiveWP – Donation Plugin and Fundraising Platform <= 2.5.0 – SQL Injection

A SQL injection vulnerability exists in the Impress GiveWP Give plugin through 2.5.0 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system via includes/payments/class-payments-query.php.

Versions affectées

*-2.5.0

Correctif

2.5.1

Publication

12/08/2019

Vulnérabilité Moyenne · 6,1
GiveWP – Donation Plugin and Fundraising Platform

GiveWP – Donation Plugin and Fundraising Platform < 0.8.5 – Reflected Cross-Site Scripting

The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Cross-Site Scripting in versions before 0.8.5 due to insufficient input sanitization and output escaping. This makes it possible for attackers to inject arbitrary web…

Versions affectées

[*, 0.8.5)

Correctif

0.8.5

Publication

20/04/2015

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités