Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In October 2023
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in 10Web Form Builder Team Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin <= 1.15.18 versions.
CVSS Score
7.1
EPSS Score
0.001
Published
2023-10-18
Unauth. Stored Cross-Site Scripting (XSS) vulnerability in 10Web Form Builder Team Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin <= 1.15.18 versions.
CVSS Score
7.1
EPSS Score
0.001
Published
2023-10-18
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kardi Order auto complete for WooCommerce plugin <= 1.2.0 versions.
CVSS Score
5.9
EPSS Score
0.001
Published
2023-10-18
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Michael Koch Mendeley Plugin plugin <= 1.3.2 versions.
CVSS Score
5.9
EPSS Score
0.001
Published
2023-10-18
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Nicola Modugno Smart Cookie Kit plugin <= 2.3.1 versions.
CVSS Score
6.5
EPSS Score
0.001
Published
2023-10-18
Sourcecodester Best Courier Management System 1.0 is vulnerable to Arbitrary file upload in the update_user function.
CVSS Score
7.2
EPSS Score
0.001
Published
2023-10-18
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_branch.php.
CVSS Score
9.8
EPSS Score
0.001
Published
2023-10-18
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_user.php.
CVSS Score
9.8
EPSS Score
0.001
Published
2023-10-18
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_staff.php.
CVSS Score
9.8
EPSS Score
0.001
Published
2023-10-18
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in MyTechTalky User Location and IP plugin <= 1.6 versions.
CVSS Score
6.5
EPSS Score
0.001
Published
2023-10-18


Contact Us

Shodan ® - All rights reserved