Extension WordPress
Vulnérabilités Analyticator
Cette page rassemble les failles publiées pour Analyticator, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Analyticator
5 fiches
Google Analyticator <= 6.5.5 – Authenticated (Administrator+) PHP Object Injection
The Google Analyticator plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 6.5.5 via deserialization of untrusted input. This allows administrator-level attackers to inject a PHP Object. The additional presence of a…
*-6.5.5
6.5.6
02/01/2023
Google Analyticator <= 6.5.5 – Authenticated (Administrator+) PHP Object Injection
The Google Analyticator plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 6.5.5 via deserialization of untrusted input. This allows administrator-level attackers to inject a PHP Object. The additional presence of a…
*-6.5.5
6.5.6
27/12/2022
Google Analyticator <= 6.4.9.5 – Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in the Google Analyticator plugin before 6.4.9.6 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) ga_adsense, (2) ga_admin_disable_DimentionIndex, (3) ga_downloads_prefix, (4) ga_downloads, or (5) ga_outbound_prefix parameter…
[*, 6.4.9.6)
6.4.9.6
24/08/2015
Google Analyticator <= 6.4.9.3 – Cross-Site Request Forgery
Cross-site request forgery (CSRF) vulnerability in Google Analyticator Wordpress Plugin before 6.4.9.3 rev @1183563.
[*, 6.4.9.4)
6.4.9.4
19/06/2015
Google Analyticator <= 5.2 – Cross-Site Scripting
The google-analyticator plugin before 5.2.1 for WordPress has insufficient HTML sanitization for Google Analytics API text.
[*, 5.2.1)
5.2.1
29/07/2009
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.