Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In June 2024
Missing Authorization vulnerability in RafflePress Giveaways and Contests by RafflePress.This issue affects Giveaways and Contests by RafflePress: from n/a through 1.12.4.
CVSS Score
4.3
EPSS Score
0.001
Published
2024-06-10
Missing Authorization vulnerability in netgsm Netgsm netgsm allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Netgsm: from n/a through <= 2.9.32.
CVSS Score
4.3
EPSS Score
0.001
Published
2024-06-10
Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Form: from n/a through 1.2.11.
CVSS Score
5.3
EPSS Score
0.005
Published
2024-06-10
Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a through 6.1.7.
CVSS Score
4.3
EPSS Score
0.001
Published
2024-06-10
Missing Authorization vulnerability in Code Parrots Easy Forms for Mailchimp.This issue affects Easy Forms for Mailchimp: from n/a through 6.9.0.
CVSS Score
5.3
EPSS Score
0.001
Published
2024-06-10
A Cross-Site Request Forgery (CSRF) vulnerability exists in the clear_personality_files_list function of the parisneo/lollms-webui v9.6. The vulnerability arises from the use of a GET request to clear personality files list, which lacks proper CSRF protection. This flaw allows attackers to trick users into performing actions without their consent, such as deleting important files on the system. The issue is present in the application's handling of requests, making it susceptible to CSRF attacks that could lead to unauthorized actions being performed on behalf of the user.
CVSS Score
4.0
EPSS Score
0.001
Published
2024-06-10
Missing Authorization vulnerability in Avirtum iPages Flipbook.This issue affects iPages Flipbook: from n/a through 1.5.1.
CVSS Score
5.3
EPSS Score
0.001
Published
2024-06-10
Missing Authorization vulnerability in LA-Studio LA-Studio Element Kit for Elementor.This issue affects LA-Studio Element Kit for Elementor: from n/a through 1.3.6.
CVSS Score
4.3
EPSS Score
0.005
Published
2024-06-10
Missing Authorization vulnerability in ThemeKraft WooBuddy.This issue affects WooBuddy: from n/a through 3.4.19.
CVSS Score
4.3
EPSS Score
0.004
Published
2024-06-10
Missing Authorization vulnerability in actpro Extra Product Options for WooCommerce.This issue affects Extra Product Options for WooCommerce: from n/a through 3.0.6.
CVSS Score
4.3
EPSS Score
0.003
Published
2024-06-10


Contact Us

Shodan ® - All rights reserved