Extension WordPress
Vulnérabilités Zarinpal Paid Download
Cette page rassemble les failles publiées pour Zarinpal Paid Download, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Zarinpal Paid Download
3 fiches
Zarinpal Paid Downloads <= 2.3 – Authenticated (Admin+) Arbitrary File Upload
The Zarinpal Paid Download plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in all versions up to, and including, 2.3. This makes it possible for authenticated attackers, with Administrator-level access and…
*-2.3
Non indiqué
21/01/2025
Zarinpal Paid Downloads <= 2.3 – Reflected Cross-Site Scripting
The Zarinpal Paid Download plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 2.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject…
*-2.3
Non indiqué
21/01/2025
Zarinpal Paid Download <= 2.3 – Reflected Cross-Site Scripting
The Zarinpal Paid Download plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 2.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary…
*-2.3
Non indiqué
14/01/2025
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.