Skip to main content

Vendor archive

scripteo CVEs

Beta · best-effort

8 CVEs tagged to vendor scripteo1 Critical, 7 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2025-6459

Published Jul 2, 2025

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.89. This…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-6437

Published Jul 2, 2025

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to SQL Injection via the ‘oid’ parameter in all versions up to, and including,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-5339

Published Jul 2, 2025

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to time-based SQL Injection via the ‘bsa_pro_id’ parameter in all versions up t…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-4689

Published Jul 2, 2025

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to Local File Inclusion which leads to Remote Code Execution in all versions up…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-4381

Published Jul 2, 2025

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to SQL Injection via the ‘$id’ variable of the getSpace() function in all versi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-4380

Published Jul 2, 2025

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 4.89 via the 'bsa…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-13322

Published May 2, 2025

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to SQL Injection via the 'a_id' parameter in all versions up to, and including,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-52428

Published Nov 18, 2024

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Peter Ads Booster by Ads Pro free-wp-booster-by-ads-pro al…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1