Common Vulnerabilities and Exposures

View Source

CVE-2023-46802

e-Tax software Version3.0.10 and earlier improperly restricts XML external entity references (XXE) due to the configuration of the embedded XML parser. By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.

  • 2023-11-06T02:15:07Z
View Source

CVE-2023-46783

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Bright Plugins Pre-Orders for WooCommerce plugin <= 1.2.13 versions.

  • 2023-11-06T10:15:08Z
View Source

CVE-2023-46782

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Chris Yee MomentoPress for Momento360 plugin <= 1.0.1 versions.

  • 2023-11-06T10:15:07Z
View Source

CVE-2023-46781

Cross-Site Request Forgery (CSRF) vulnerability in Roland Murg Current Menu Item for Custom Post Types plugin <= 1.5 versions.

  • 2023-11-06T12:15:08Z
View Source

CVE-2023-46780

Cross-Site Request Forgery (CSRF) vulnerability in Alter plugin <= 1.0 versions.

  • 2023-11-06T12:15:08Z
View Source

CVE-2023-46779

Cross-Site Request Forgery (CSRF) vulnerability in EasyRecipe plugin <= 3.5.3251 versions.

  • 2023-11-06T12:15:08Z
View Source

CVE-2023-46778

Cross-Site Request Forgery (CSRF) vulnerability in TheFreeWindows Auto Limit Posts Reloaded plugin <= 2.5 versions.

  • 2023-11-06T12:15:08Z
View Source

CVE-2023-46777

Cross-Site Request Forgery (CSRF) vulnerability in Custom Login Page | Temporary Users | Rebrand Login | Login Captcha plugin <= 1.1.3 versions.

  • 2023-11-06T12:15:08Z

Copyright @2023 ZAMBIA CIRT