Vulnerabilities > Genetechsolutions
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-02-21 | CVE-2024-13818 | Information Exposure Through Log Files vulnerability in Genetechsolutions PIE Register The Registration Forms – User Registration Forms, Invitation-Based Registrations, Front-end User Profile, Login Form & Content Restriction plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.8.3.9 through publicly exposed log files. | 7.5 |
2024-03-17 | CVE-2024-27957 | Unspecified vulnerability in Genetechsolutions PIE Register Unrestricted Upload of File with Dangerous Type vulnerability in Pie Register.This issue affects Pie Register: from n/a through 3.8.3.1. | 9.8 |
2023-02-27 | CVE-2023-0552 | Unspecified vulnerability in Genetechsolutions PIE Register The Registration Forms WordPress plugin before 3.8.2.3 does not properly validate the redirection URL when logging in and login out, leading to an Open Redirect vulnerability | 5.4 |
2022-12-19 | CVE-2022-4024 | Missing Authorization vulnerability in Genetechsolutions PIE Register The Registration Forms WordPress plugin before 3.8.1.3 does not have authorisation and CSRF when deleting users via an init action handler, allowing unauthenticated attackers to delete arbitrary users (along with their posts) | 6.5 |
2021-11-08 | CVE-2021-24647 | Unspecified vulnerability in Genetechsolutions PIE Register The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.1.7.6 has a flaw in the social login implementation, allowing unauthenticated attacker to login as any user on the site by only knowing their user ID or username | 8.1 |
2021-11-08 | CVE-2021-24731 | Unspecified vulnerability in Genetechsolutions PIE Register The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.7.1.6 does not properly escape user data before using it in a SQL statement in the wp-json/pie/v1/login REST API endpoint, leading to an SQL injection. | 9.8 |
2021-04-22 | CVE-2021-24239 | Unspecified vulnerability in Genetechsolutions PIE Register The Pie Register – User Registration Forms. | 6.1 |
2019-08-27 | CVE-2019-15659 | SQL Injection vulnerability in Genetechsolutions PIE Register The pie-register plugin before 3.1.2 for WordPress has SQL injection, a different issue than CVE-2018-10969. | 9.8 |
2019-07-23 | CVE-2019-1010207 | Cross-site Scripting vulnerability in Genetechsolutions PIE Register 3.0.15 Genetechsolutions Pie Register 3.0.15 is affected by: Cross Site Scripting (XSS). | 6.1 |
2018-06-17 | CVE-2018-10969 | SQL Injection vulnerability in Genetechsolutions PIE Register SQL injection vulnerability in the Pie Register plugin before 3.0.10 for WordPress allows remote attackers to execute arbitrary SQL commands via the invitation codes grid. | 9.8 |