Vulnerabilities > Elearningfreak > Insert OR Embed Articulate Content

DATE CVE VULNERABILITY TITLE RISK
2023-12-21 CVE-2023-50824 Cross-site Scripting vulnerability in Elearningfreak Insert or Embed Articulate Content
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brian Batt Insert or Embed Articulate Content into WordPress allows Stored XSS.This issue affects Insert or Embed Articulate Content into WordPress: from n/a through 4.3000000021.
network
low complexity
elearningfreak CWE-79
5.4
2019-08-27 CVE-2019-15649 Unrestricted Upload of File with Dangerous Type vulnerability in Elearningfreak Insert OR Embed Articulate Content
The insert-or-embed-articulate-content-into-wordpress plugin before 4.2999 for WordPress has insufficient restrictions on file upload.
network
low complexity
elearningfreak CWE-434
6.5
2019-08-27 CVE-2019-15648 Path Traversal vulnerability in Elearningfreak Insert OR Embed Articulate Content
The insert-or-embed-articulate-content-into-wordpress plugin before 4.29991 for WordPress has insufficient restrictions on deleting or renaming by a Subscriber.
network
low complexity
elearningfreak CWE-22
5.5