Extension WordPress
Vulnérabilités Search Everything
Cette page rassemble les failles publiées pour Search Everything, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Search Everything
4 fiches
Search Everything <= 8.1.6 – SQL Injection
The search-everything plugin before 8.1.7 for WordPress has SQL injection related to WordPress 4.7.x, a different vulnerability than CVE-2014-2316.
*-8.1.6
8.1.7
20/03/2017
Search Everything <= 8.1.5 – SQL Injection
The search-everything plugin before 8.1.6 for WordPress has SQL injection related to empty search strings, a different vulnerability than CVE-2014-2316.
[*, 8.1.6)
8.1.6
10/06/2016
Search Everything <= 8.1 – Cross-Site Request Forgery
Cross-site request forgery (CSRF) vulnerability in the Search Everything plugin before 8.1.1 for WordPress allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
[*, 8.1.1)
8.1.1
06/05/2014
Search Everything <= 7.0.2 – SQL Injection
SQL injection vulnerability in se_search_default in the Search Everything plugin before 7.0.3 for WordPress allows remote attackers to execute arbitrary SQL commands via the s parameter to index.php. NOTE: some of these details are obtained from third party…
[*, 7.0.3)
7.0.3
11/02/2014
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.