Security Vulnerabilities
- CVEs Published In 2016
Zotpress plugin for WordPress SQLi in zp_get_account()
Unauthenticated SQL Injection in Huge-IT Catalog v1.0.7 for Joomla
Unauthenticated SQL Injection in Huge-IT Portfolio Gallery Plugin v1.0.6
Unauthenticated SQL Injection in Huge-IT Video Gallery v1.0.9 for Joomla
XSS in huge IT gallery v1.1.5 for Joomla
XSS and SQLi in huge IT gallery v1.1.5 for Joomla
Unauthenticated remote .jpg file upload in contus-video-comments v1.0 wordpress plugin
TP-LINK lost control of two domains, www.tplinklogin.net and tplinkextender.net. Please note that these domains are physically printed on many of the devices.
Ipswitch WhatsUp Gold 16.4.1 WrFreeFormText.asp sUniqueID Parameter Blind SQL Injection
Remote file upload vulnerability in wordpress plugin csv2wpec-coupon v1.1