Skip to main content

Vendor archive

webence CVEs

Beta · best-effort

4 CVEs tagged to vendor webence0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2022-1762

Published Jun 13, 2022

The iQ Block Country WordPress plugin before 1.2.20 does not properly checks HTTP headers in order to validate the origin IP address, allowing threat actors to bypass it's block f…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-0246

Published Apr 11, 2022

The settings of the iQ Block Country WordPress plugin before 1.2.13 can be exported or imported using its backup functionality. An authorized user can import preconfigured setting…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36873

Published Sep 23, 2021

Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in WordPress iQ Block Country plugin (versions <= 1.2.11). Vulnerable parameter: &blockcountry_blockmessage.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1