Vulnerabilities > Neliosoftware

DATE CVE VULNERABILITY TITLE RISK
2019-09-17 CVE-2016-10977 Path Traversal vulnerability in Neliosoftware Nelio AB Testing
The nelio-ab-testing plugin before 4.5.0 for WordPress has filename=..%2f directory traversal.
network
low complexity
neliosoftware CWE-22
6.5
2019-08-22 CVE-2016-10927 Server-Side Request Forgery (SSRF) vulnerability in Neliosoftware Nelio AB Testing
The nelio-ab-testing plugin before 4.5.11 for WordPress has SSRF in ajax/iesupport.php.
network
low complexity
neliosoftware CWE-918
critical
10.0
2019-08-22 CVE-2016-10926 Server-Side Request Forgery (SSRF) vulnerability in Neliosoftware Nelio AB Testing
The nelio-ab-testing plugin before 4.5.9 for WordPress has SSRF in ajax/iesupport.php.
network
low complexity
neliosoftware CWE-918
critical
10.0
2019-08-16 CVE-2017-18547 Cross-Site Request Forgery (CSRF) vulnerability in Neliosoftware Nelio AB Testing
The nelio-ab-testing plugin before 4.6.4 for WordPress has CSRF in experiment forms.
network
low complexity
neliosoftware CWE-352
8.8