Vulnerabilities
Vulnerable Software
Awesomemotive:  Security Vulnerabilities
The easy-digital-downloads plugin before 2.9.16 for WordPress has XSS related to IP address logging.
CVSS Score
6.1
EPSS Score
0.01
Published
2019-08-16
The easy-digital-downloads plugin before 2.3.3 for WordPress has SQL injection.
CVSS Score
9.8
EPSS Score
0.02
Published
2019-08-16
An issue was discovered in Snap Creek Duplicator before 1.2.42. By accessing leftover installer files (installer.php and installer-backup.php), an attacker can inject PHP code into wp-config.php during the database setup step, achieving arbitrary code execution.
CVSS Score
9.8
EPSS Score
0.601
Published
2018-09-19
Cross-site scripting (XSS) vulnerability in installer/build/view.step4.php of the SnapCreek Duplicator plugin 1.2.32 for WordPress allows remote attackers to inject arbitrary JavaScript or HTML via the json parameter.
CVSS Score
6.1
EPSS Score
0.034
Published
2018-03-26


Contact Us

Shodan ® - All rights reserved