Vulnerabilities > Multidots > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-03 CVE-2023-39158 Unspecified vulnerability in Multidots Banner Management for Woocommerce
Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Banner Management For WooCommerce plugin <= 2.4.2 versions.
network
low complexity
multidots
6.5
2023-10-03 CVE-2023-39159 Unspecified vulnerability in Multidots Fraud Prevention for Woocommerce
Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Fraud Prevention For Woocommerce plugin <= 2.1.5 versions.
network
low complexity
multidots
6.5
2023-10-03 CVE-2023-40212 Unspecified vulnerability in Multidots Product Attachment for Woocommerce
Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Product Attachment for WooCommerce plugin <= 2.1.8 versions.
network
low complexity
multidots
6.5
2018-06-01 CVE-2018-11486 Cross-site Scripting vulnerability in Multidots Advance Search for Woocommerce
An issue was discovered in the MULTIDOTS Advance Search for WooCommerce plugin 1.0.9 and earlier for WordPress.
network
low complexity
multidots CWE-79
6.1
2018-06-01 CVE-2018-11485 Cross-site Scripting vulnerability in Multidots Woocommerce Quick Reports
The MULTIDOTS WooCommerce Quick Reports plugin 1.0.6 and earlier for WordPress is vulnerable to Stored XSS.
network
low complexity
multidots CWE-79
6.1
2018-05-31 CVE-2018-11633 Cross-Site Request Forgery (CSRF) vulnerability in Multidots WOO Checkout for Digital Goods 2.1
An issue was discovered in the MULTIDOTS Woo Checkout for Digital Goods plugin 2.1 for WordPress.
network
low complexity
multidots CWE-352
6.5
2018-05-31 CVE-2018-11632 Cross-Site Request Forgery (CSRF) vulnerability in Multidots ADD Social Share Messenger Buttons Whatsapp and Viber 1.0.8
An issue was discovered in the MULTIDOTS Add Social Share Messenger Buttons Whatsapp and Viber plugin 1.0.8 for WordPress.
network
low complexity
multidots CWE-352
6.5
2018-05-31 CVE-2018-11580 Cross-site Scripting vulnerability in Multidots Mass Pages/Posts Creator 1.2.2
An issue was discovered in mass-pages-posts-creator.php in the MULTIDOTS Mass Pages/Posts Creator plugin 1.2.2 for WordPress.
network
low complexity
multidots CWE-79
5.4
2018-05-31 CVE-2018-11579 Improper Authentication vulnerability in Multidots Woocommerce Category Banner Management 1.1.0
class-woo-banner-management.php in the MULTIDOTS WooCommerce Category Banner Management plugin 1.1.0 for WordPress has an Unauthenticated Settings Change Vulnerability, related to certain wp_ajax_nopriv_ usage.
network
low complexity
multidots CWE-287
5.3