Vulnerabilities (CVE)

Total 316927 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-18563 1 Swimordiesoftware 1 Rsvp 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The rsvp plugin before 2.3.8 for WordPress has persistent XSS via the note field on the attendee-list screen.
CVE-2017-18562 1 Bestwebsoft 1 Error Log Viewer 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The error-log-viewer plugin before 1.0.6 for WordPress has multiple XSS issues.
CVE-2017-18561 1 Embed Images In Comments Project 1 Embed Images In Comments 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The embed-comment-images plugin before 0.6 for WordPress has XSS.
CVE-2017-18560 1 Content Audit Project 1 Content Audit 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The content-audit plugin before 1.9.2 for WordPress has XSS.
CVE-2017-18559 1 Cformsii Project 1 Cformsii 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The cforms2 plugin before 14.13.3 for WordPress has multiple XSS issues.
CVE-2017-18558 1 Bestwebsoft 1 Testimonials 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The bws-testimonials plugin before 0.1.9 for WordPress has multiple XSS issues.
CVE-2017-18557 1 Bestwebsoft 1 Google Maps 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The bws-google-maps plugin before 1.3.6 for WordPress has multiple XSS issues.
CVE-2017-18556 1 Bestwebsoft 1 Google Analytics 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The bws-google-analytics plugin before 1.7.1 for WordPress has multiple XSS issues.
CVE-2017-18555 1 Mediaburst 1 Booking Calendar 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The booking-sms plugin before 1.1.0 for WordPress has XSS.
CVE-2017-18554 1 Analytics Tracker Project 1 Analytics Tracker 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The analytics-tracker plugin before 1.1.1 for WordPress has XSS via a search event.
CVE-2017-18553 1 Ad Buttons Project 1 Ad Buttons 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The ad-buttons plugin before 2.3.2 for WordPress has XSS.
CVE-2017-18552 1 Linux 1 Linux Kernel 2024-11-21 4.6 MEDIUM 7.8 HIGH
An issue was discovered in net/rds/af_rds.c in the Linux kernel before 4.11. There is an out of bounds write and read in the function rds_recv_track_latency.
CVE-2017-18551 2 Linux, Opensuse 2 Linux Kernel, Leap 2024-11-21 4.6 MEDIUM 6.7 MEDIUM
An issue was discovered in drivers/i2c/i2c-core-smbus.c in the Linux kernel before 4.14.15. There is an out of bounds write in the function i2c_smbus_xfer_emulated.
CVE-2017-18550 1 Linux 1 Linux Kernel 2024-11-21 2.1 LOW 5.5 MEDIUM
An issue was discovered in drivers/scsi/aacraid/commctrl.c in the Linux kernel before 4.13. There is potential exposure of kernel stack memory because aac_get_hba_info does not initialize the hbainfo structure.
CVE-2017-18549 1 Linux 1 Linux Kernel 2024-11-21 2.1 LOW 5.5 MEDIUM
An issue was discovered in drivers/scsi/aacraid/commctrl.c in the Linux kernel before 4.13. There is potential exposure of kernel stack memory because aac_send_raw_srb does not initialize the reply structure.
CVE-2017-18548 1 Datainterlock 1 Note Press 2024-11-21 7.5 HIGH 9.8 CRITICAL
The note-press plugin before 0.1.2 for WordPress has SQL injection.
CVE-2017-18547 1 Neliosoftware 1 Nelio Ab Testing 2024-11-21 6.8 MEDIUM 8.8 HIGH
The nelio-ab-testing plugin before 4.6.4 for WordPress has CSRF in experiment forms.
CVE-2017-18546 1 Jayj Quicktag Project 1 Jayj Quicktag 2024-11-21 6.8 MEDIUM 8.8 HIGH
The jayj-quicktag plugin before 1.3.2 for WordPress has CSRF.
CVE-2017-18545 1 Invite Anyone Project 1 Invite Anyone 2024-11-21 5.0 MEDIUM 7.5 HIGH
The invite-anyone plugin before 1.3.16 for WordPress has incorrect escaping of untrusted Dashboard and front-end input.
CVE-2017-18544 1 Invite Anyone Project 1 Invite Anyone 2024-11-21 6.8 MEDIUM 8.8 HIGH
The invite-anyone plugin before 1.3.16 for WordPress has admin-panel CSRF.