Wordpress
Wordpress Wassup Plugin: vulnerabilities and CVEs
Wordpress Wassup Plugin has 2 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs2
Last 12 months0
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2633 | Medium (4.3) | 2.1% | — | Jun 15, 2012 | Cross-site scripting (XSS) vulnerability in wassup.php in the WassUp plugin before 1.8.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header. |
| CVE-2008-0520 | High (7.5) | 2.9% | — | Jan 31, 2008 | Multiple SQL injection vulnerabilities in main.php in the WassUp plugin 1.4 through 1.4.3 for WordPress allow remote attackers to execute arbitrary SQL commands via the (1) from_date or (2) to_date parameter to spy.php. |
Other products by Wordpress
Wordpress · 367Wordpress MU · 10Sniplets Plugin · 3Math Comment Spam Protection Plugin · 2Pay-with-tweet · 2Blix · 2Gutenberg · 2Captcha · 1Drag Drop Builder Human Face Detector PRE Built Templates Spam Protection User Email Notifications More · 1Blogger Importer · 1Download Monitor Plugin · 1Debug BAR · 1