CWE:
 

Topic
Date
Author
Low
CMS Showcase 1.0 Cross Site Scripting
10.09.2017
Felipe "Renzi" Gabriel


CVEMAP Search Results

CVE
Details
Description
2023-01-30
Waiting for details
CVE-2023-0581

Updating...
 

 
The PrivateContent plugin for WordPress is vulnerable to protection mechanism bypass due to the use of client side validation in versions up to, and including, 8.4.3. This is due to the plugin checking if an IP had been blocklist via client-side scripts rather than server-side. This makes it possible for unauthenticated attackers to bypass any login restrictions that may prevent a brute force attack.

 
2022-09-06
Waiting for details
CVE-2022-1525

Updating...
 

 
The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-602: Client-Side Enforcement of Server-Side Security, which could allow attackers to bypass web access controls by inspecting and modifying the source code of password protected web elements.

 

 


Copyright 2024, cxsecurity.com

 

Back to Top