Thème WordPress
Vulnérabilités Chocolate WP – Responsive Photography Theme | Photography
Cette page rassemble les failles publiées pour Chocolate WP – Responsive Photography Theme | Photography, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Chocolate WP – Responsive Photography Theme | Photography
7 fiches
DT Chocolate (All Versions) – Cross-Site Scripting
The DT Chocolate theme plugin for WordPress is vulnerable to Cross-Site Scripting in all versions due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts that execute in…
*
Non indiqué
13/01/2014
DT Chocolate <= 1.0 – Open Redirect
The DT Chocolate theme for WordPress is vulnerable to Open Redirect in versions up to, and including, 1.0. This is due to a lack of sanitization of user-supplied input via the 'image' parameter. This makes it possible for…
*-1.0
Non indiqué
03/02/2013
Chocolate WP – Responsive Photography Theme (All Versions) – Remote File Inclusion
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to Remote File Inclusion in all versions due to inclusion of a vulnerable version of TimThumb. This allows unauthenticated attackers to include remote files on the server,…
*
Non indiqué
24/01/2013
Chocolate WP – Responsive Photography Theme (All Versions) – Denial of Service and Abuse of Functionality
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to Denial of Service and Abuse of Functionality in all versions. This is due to inclusion of a vulnerable version of TimThumb. This makes it possible for…
*
Non indiqué
24/01/2013
Chocolate WP – Responsive Photography Theme (All Versions) – Arbitrary File Upload
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to arbitrary file uploads due to inclusion of a vulnerable version of TimThumb in all versions. This makes it possible for unauthenticated attackers to upload arbitrary files…
*
Non indiqué
24/01/2013
Chocolate WP – Responsive Photography Theme (All Versions) – Full Path Disclosure
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to Sensitive Data Exposure in all versions via the index.php file and inclusion of a vulnerable version of TimThumb. This can allow unauthenticated attackers to extract sensitive…
*
Non indiqué
24/01/2013
Chocolate WP – Responsive Photography Theme (All Versions) – Cross-Site Scripting
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to Reflected Cross-Site Scripting due to inclusion of a vulnerable version of TimThumb in all versions. This makes it possible for unauthenticated attackers to inject arbitrary web…
*
Non indiqué
24/01/2013
Thèmes également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.