Vulnerabilities > Marcel Brinkkemper

DATE CVE VULNERABILITY TITLE RISK
2014-04-11 CVE-2014-2333 Cross-Site Scripting vulnerability in Marcel Brinkkemper Lazyest-Gallery
Cross-site scripting (XSS) vulnerability in the Lazyest Gallery plugin before 1.1.21 for WordPress allows remote attackers to inject arbitrary web script or HTML via an EXIF tag.
network
high complexity
marcel-brinkkemper CWE-79
2.6
2013-02-12 CVE-2011-5264 Cross-Site Scripting vulnerability in Marcel Brinkkemper Lazyest-Backup 0.1.0/0.2.0/0.2.1
Cross-site scripting (XSS) vulnerability in lazyest-backup.php in the Lazyest Backup plugin before 0.2.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the xml_or_all parameter.
4.3