Extension WordPress
Vulnérabilités Ultimate Product Catalog
Cette page rassemble les failles publiées pour Ultimate Product Catalog, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Ultimate Product Catalog
12 fiches
Ultimate Product Catalogue <= 5.2.15 – Cross-Site Request Forgery via reset_settings()
The Ultimate Product Catalogue plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.2.15. This is due to missing or incorrect nonce validation on the reset_settings() function. This makes it possible for…
*-5.2.15
5.2.16
10/04/2024
Ultimate Product Catalog <= 5.2.5 – Authenticated(Administrator+) Stored Cross-Site Scripting
The Ultimate Product Catalog plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to, and including, 5.2.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers,…
*-5.2.5
5.2.6
05/06/2023
Ultimate Product Catalog – WordPress Catalog Plugin <= 5.0.25 – Cross-Site Request Forgery
The Ultimate Product Catalog WordPress plugin before 5.0.26 does not have authorisation and CSRF checks in some AJAX actions, which could allow any authenticated users, such as subscriber to call them and add arbitrary products, or change the…
[*, 5.0.26)
5.0.26
06/01/2022
Ultimate Product Catalog <= 4.2.21 – Authorization Bypass and Cross-Site Request Forgery
The Ultimate Product Catalog plugin for WordPress is vulnerable to authorization bypass and Cross-Site Request Forgery in versions up to, and including 4.2.21 due to missing capability and nonce checking on various functions. This makes it possible for…
*-4.2.21
4.2.22
03/10/2017
Ultimate Product Catalog <= 4.2.11 – Cross-Site Scripting
The Etoile Ultimate Product Catalog plugin 4.2.11 for WordPress has XSS in the Add Product Manually component.
*-4.2.11
4.2.12
01/08/2017
Ultimate Product Catalog <= 4.2.22 – SQL Injection
The Etoile Ultimate Product Catalog plugin 4.2.22 for WordPress has SQL injection with these wp-admin/admin-ajax.php POST actions: catalogue_update_order list-item, video_update_order video-item, image_update_order list-item, tag_group_update_order list_item, category_products_update_order category-product-item, custom_fields_update_order field-item, categories_update_order category-item, subcategories_update_order subcategory-item, and tags_update_order tag-list-item.
*-4.2.22
4.2.23
01/08/2017
Ultimate Product Catalog < 4.2.3 – Authenticated SQL Injection
The Ultimate Product Catalog plugin for WordPress is vulnerable to SQL Injection via the ‘CatID’ parameter in versions before 4.2.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL…
[*, 4.2.3)
4.2.3
27/06/2017
Ultimate Product Catalog <= 3.8.1 – Missing Authorization to Plugin Settings Update
The Ultimate Product Catalog plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the Update_UPCP_Options() function in versions up to, and including, 3.8.1. This makes it possible for authenticated attackers, with contributor-level…
[*, 3.8.2)
3.8.2
17/06/2016
Ultimate Product Catalogue < 3.1.3 – SQL Injection
The Ultimate Product Catalogue for WordPress is vulnerable to SQL Injection via the ‘Item_ID’ and 'SingleProduct' parameters in versions before 3.1.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing…
[*, 3.1.3)
3.1.3
07/06/2015
Ultimate Product Catalog < 4.2.22 – Arbitrary File Upload
The Ultimate Product Catalog plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the Functions/Prepare_Data_For_Insertion.php file in versions up to, and including, 4.2.22. This makes it possible for unauthenticated attackers (before…
[*, 4.2.22)
4.2.22
22/04/2015
Ultimate Product Catalog < 3.1.3 – Multiple Vulnerabilities
The Ultimate Product Catalog plugin for WordPress has multiple vulnerabilities in versions up to, and including, 3.1.2. This is due to a lack of sanitization of user input and insufficient checks on file types. This makes it possible…
[*, 3.1.3)
3.1.3
22/04/2015
Ultimate Product Catalog < 2.1.1 – Authenticated (Admin+) SQL Injection
The Ultimate Product Catalog plugin for WordPress is vulnerable to generic SQL Injection via the Catalogue_ID, SubCategory_ID, SingleProduct, & Tag_ID parameters in versions up to, and including, 2.1 due to insufficient escaping on the user supplied parameters and…
*-2.1
2.1.1
28/05/2014
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.