Skip to main content

Vendor archive

cartpauj CVEs

Beta · best-effort

6 CVEs tagged to vendor cartpauj0 Critical, 1 High, 4 Medium, 1 Low, 0 Unrated.

CVE-2013-0735

Published Apr 2, 2014

Multiple SQL injection vulnerabilities in wpf.class.php in the Mingle Forum plugin before 1.0.34 for WordPress allow remote attackers to execute arbitrary SQL commands via the id…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2013-0734

Published Mar 28, 2014

Multiple cross-site scripting (XSS) vulnerabilities in the Mingle Forum plugin before 1.0.34 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0736

Published Oct 9, 2013

Multiple cross-site request forgery (CSRF) vulnerabilities in the Mingle Forum plugin 1.0.34 and possibly earlier for WordPress allow remote attackers to hijack the authentication…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5328

Published Oct 8, 2012

Multiple SQL injection vulnerabilities in the Mingle Forum plugin 1.0.32.1 and other versions before 1.0.33 for WordPress might allow remote authenticated users to execute arbitra…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5327

Published Oct 8, 2012

Multiple SQL injection vulnerabilities in fs-admin/fs-admin.php in the Mingle Forum plugin 1.0.32.1 and other versions before 1.0.33 for WordPress allow remote authenticated users…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1