Extension WordPress
Vulnérabilités WP Comment Remix
Cette page rassemble les failles publiées pour WP Comment Remix, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de WP Comment Remix
3 fiches
WP Comment Remix < 1.4.4 – SQL Injection
SQL injection vulnerability in ajax_comments.php in the WP Comment Remix plugin before 1.4.4 for WordPress allows remote attackers to execute arbitrary SQL commands via the p parameter.
[*, 1.4.4)
1.4.4
14/10/2008
WP Comment Remix <= 1.4.3 – SQL Injection
Cross-site scripting (XSS) vulnerability in wpcommentremix.php in WP Comment Remix plugin before 1.4.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the (1) replytotext, (2) quotetext, (3) originallypostedby, (4) sep, (5) maxtags, (6)…
*-1.4.3
1.4.4
14/10/2008
WP Comment Remix < 1.4.4 – Cross-Site Request Forgery
Cross-site request forgery (CSRF) vulnerability in the wpcr_do_options_page function in WP Comment Remix plugin before 1.4.4 for WordPress allows remote attackers to perform unauthorized actions as administrators via a request that sets the wpcr_hidden_form_input parameter.
[*, 1.4.4)
1.4.4
13/10/2008
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.