Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In June 2024
Improper privilege management vulnerability in Parallels Desktop Software, which affects versions earlier than 19.3.0. An attacker could add malicious code in a script and populate the BASH_ENV environment variable with the path to the malicious script, executing on application startup. An attacker could exploit this vulnerability to escalate privileges on the system.
CVSS Score
7.7
EPSS Score
0.001
Published
2024-06-21
Cross Site Request Forgery (CSRF) vulnerability in Tribulant Newsletters.This issue affects Newsletters: from n/a through 4.9.7.
CVSS Score
4.3
EPSS Score
0.0
Published
2024-06-21
Cross-Site Request Forgery (CSRF) vulnerability in Rara Theme Book Landing Page.This issue affects Book Landing Page: from n/a through 1.2.3.
CVSS Score
4.3
EPSS Score
0.0
Published
2024-06-21
Cross Site Request Forgery (CSRF) vulnerability in Uncanny Owl Uncanny Automator Pro.This issue affects Uncanny Automator Pro: from n/a through 5.3.
CVSS Score
5.4
EPSS Score
0.0
Published
2024-06-21
Cross-Site Request Forgery (CSRF) vulnerability in blazethemes Digital Newspaper.This issue affects Digital Newspaper: from n/a through 1.1.5.
CVSS Score
4.3
EPSS Score
0.0
Published
2024-06-21
Cross-Site Request Forgery (CSRF) vulnerability in Ali2Woo Ali2Woo Lite.This issue affects Ali2Woo Lite: from n/a through 3.3.5.
CVSS Score
8.3
EPSS Score
0.001
Published
2024-06-21
Missing Authorization vulnerability in Nikolay Strikhar WordPress Form Builder Plugin – Gutenberg Forms.This issue affects WordPress Form Builder Plugin – Gutenberg Forms: from n/a through 2.2.8.3.
CVSS Score
6.5
EPSS Score
0.005
Published
2024-06-21
Missing Authorization vulnerability in WPDeveloper EmbedPress.This issue affects EmbedPress: from n/a through 3.8.3.
CVSS Score
4.3
EPSS Score
0.002
Published
2024-06-21
Missing Authorization vulnerability in Bill Minozzi WP Tools.This issue affects WP Tools: from n/a through 3.41.
CVSS Score
8.8
EPSS Score
0.003
Published
2024-06-21
Cross-Site Request Forgery (CSRF) vulnerability in presscustomizr Hueman.This issue affects Hueman: from n/a through 3.7.24.
CVSS Score
4.3
EPSS Score
0.0
Published
2024-06-21


Contact Us

Shodan ® - All rights reserved