Mikejolley Download Monitor vulnerabilities
3 known vulnerabilities affecting mikejolley/download_monitor.
Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
MEDIUM3
Vulnerabilities
Page 1 of 1
CVE-2012-4768P4MEDIUMCVSS 4.3PoCv3.3.5.72014-09-04
CVE-2012-4768 [MEDIUM] CWE-79 CVE-2012-4768: Cross-site scripting (XSS) vulnerability in the Download Monitor plugin before 3.3.5.9 for WordPress
Cross-site scripting (XSS) vulnerability in the Download Monitor plugin before 3.3.5.9 for WordPress allows remote attackers to inject arbitrary web script or HTML via the dlsearch parameter to the default URI.
nvd
CVE-2013-3262P4MEDIUMCVSS 4.3≤ 1.0.6v1.0.0+5 more2013-08-09
CVE-2013-3262 [MEDIUM] CWE-79 CVE-2013-3262: Cross-site scripting (XSS) vulnerability in admin/admin.php in the Download Monitor plugin before 3.
Cross-site scripting (XSS) vulnerability in admin/admin.php in the Download Monitor plugin before 3.3.6.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the p parameter.
nvd
CVE-2013-5098P4MEDIUMCVSS 4.3≤ 1.0.6v1.0.0+5 more2013-08-09
CVE-2013-5098 [MEDIUM] CVE-2013-5098: Cross-site scripting (XSS) vulnerability in admin/admin.php in the Download Monitor plugin before 3.
Cross-site scripting (XSS) vulnerability in admin/admin.php in the Download Monitor plugin before 3.3.6.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the sort parameter, a different vulnerability than CVE-2013-3262.
nvd