Lista CVE 2023/45xxx

CVE nel gruppo: 45xxx

CVE-2023-45050 (N/A)

CVE-2023-45051 (WordPress Jetpack Plugin <= 12.8-a.1 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45052 (WordPress Image vertical reel scroll slideshow Plugin <= 9.0 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45053 (WordPress WP Bing Map Pro Plugin < 5.0 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45054 (WordPress WP Content Pilot plugin <= 1.3.3 - HTML Injection vulnerability)

CVE-2023-45055 (WordPress Product Category Tree Plugin <= 2.5 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45056 (WordPress MStore API Plugin <= 4.0.6 is vulnerable to SQL Injection)

CVE-2023-45057 (WordPress Open User Map | Everybody can add locations Plugin <= 1.3.26 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45058 (WordPress Hitsteps Web Analytics Plugin <= 5.86 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45059 (WordPress Short URL Plugin <= 1.6.8 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45060 (WordPress Gumroad Plugin <= 3.1.0 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45061 (WordPress Interactive World Map Plugin <= 3.2.0 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45062 (WordPress WP Job Openings plugin <= 3.4.1 - Broken Access Control vulnerability)

CVE-2023-45063 (WordPress Download canvasio3D Light Plugin <= 2.4.6 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45064 (WordPress AI Content Writing Assistant (Content Writer, ChatGPT, Image Generator) All in One Plugin <= 1.1.5 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45065 (WordPress OPcache Dashboard Plugin <= 0.3.1 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45066 (WordPress Bulk NoIndex & NoFollow Toolkit Plugin <= 1.42 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45067 (WordPress WP Ultimate Exporter Plugin <= 2.4.1 is vulnerable to Sensitive Data Exposure)

CVE-2023-45068 (WordPress WP Simple HTML Sitemap Plugin <= 2.1 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45069 (WordPress Contact Form by Supsystic Plugin <= 1.7.27 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45070 (WordPress Video Gallery – YouTube Gallery Plugin <= 2.1.3 is vulnerable to SQL Injection)

CVE-2023-45071 (WordPress Form Maker by 10Web Plugin <= 1.15.18 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45072 (WordPress Form Maker by 10Web Plugin <= 1.15.18 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45073 (WordPress Order auto complete for WooCommerce Plugin <= 1.2.0 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45074 (WordPress Mendeley Plugin <= 1.3.2 is vulnerable to Cross Site Scripting (XSS))

CVE-2023-45075 (WordPress Advanced Page Visit Counter Plugin <= 7.1.1 is vulnerable to SQL Injection)

CVE-2023-45076 (N/A)

CVE-2023-45077 (N/A)

CVE-2023-45078 (N/A)

CVE-2023-45079 (N/A)

CVE-2023-45083 (N/A)

CVE-2023-45084 (HyperCloud: “admin” and “serveradmin” users can be deleted)

CVE-2023-45085 (Media caddy removal and reinsertion without reboot may cause data loss)

CVE-2023-45101 (When compute hosts are disabled and reenabled, they immediately transition to “ON”, not “INIT”)

CVE-2023-45102 (WordPress Customer Reviews for WooCommerce plugin <= 5.36.0 - Broken Access Control vulnerability)

CVE-2023-45103 (WordPress Blog Manager Light Plugin <= 1.20 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45104 (WordPress Permalinks Customizer Plugin <= 2.8.2 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45105 (WordPress BetterLinks plugin <= 1.6.0 - Broken Access Control vulnerability)

CVE-2023-45106 (WordPress affiliate-toolkit – WordPress Affiliate Plugin Plugin <= 3.3.9 is vulnerable to Open Redirection)

CVE-2023-45107 (WordPress Urvanov Syntax Highlighter Plugin <= 2.8.33 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45108 (WordPress GoodBarber Plugin <= 1.0.22 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45109 (WordPress Mailrelay Plugin <= 2.1.1 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45110 (WordPress WhitePage Plugin <= 1.1.5 is vulnerable to Cross Site Request Forgery (CSRF))

CVE-2023-45111 (WordPress Bold Timeline Lite plugin <= 1.1.9 - Broken Access Control vulnerability)

CVE-2023-45112 (Online Examination System v1.0 – Multiple Unauthenticated SQL Injections (SQLi))

CVE-2023-45113 (N/A)

CVE-2023-45114 (N/A)

CVE-2023-45115 (N/A)

CVE-2023-45116 (Online Examination System v1.0 – Multiple Authenticated SQL Injections (SQLi))

CVE-2023-45117 (Online Examination System v1.0 – Multiple Authenticated SQL Injections (SQLi))

CVE-2023-45118 (Online Examination System v1.0 – Multiple Authenticated SQL Injections (SQLi))

CVE-2023-45119 (Online Examination System v1.0 – Multiple Authenticated SQL Injections (SQLi))

CVE-2023-45120 (Online Examination System v1.0 – Multiple Authenticated SQL Injections (SQLi))

CVE-2023-45121 (Online Examination System v1.0 – Multiple Authenticated SQL Injections (SQLi))

CVE-2023-45122 (Online Examination System v1.0 – Multiple Authenticated SQL Injections (SQLi))

CVE-2023-45123 (N/A)

CVE-2023-45124 (N/A)

CVE-2023-45125 (N/A)

CVE-2023-45126 (N/A)

CVE-2023-45127 (N/A)