RSS   Vulnerabilities for 'Pricing table by supsystic'   RSS

2020-03-23
 
CVE-2020-9392

CWE-276
 

 
An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. Because there is no permission check on the ImportJSONTable, createFromTpl, and getJSONExportTable endpoints, unauthenticated users can retrieve pricing table information, create new tables, or import/modify a table.

 
2020-02-25
 
CVE-2020-9394

CWE-352
 

 
An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. It allows CSRF.

 
 
CVE-2020-9393

CWE-79
 

 
An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. It allows XSS.

 

 >>> Vendor: Supsystic 10 Products
Contact form
Popup
Newsletter by supsystic
Pricing table by supsystic
Data tables generator
Ultimate maps
Easy google maps
Price table
Social share buttons
Digital publications by supsystic


Copyright 2024, cxsecurity.com

 

Back to Top