Vulnerabilities > Rednao

DATE CVE VULNERABILITY TITLE RISK
2024-12-13 CVE-2023-38475 Missing Authorization vulnerability in Rednao Donations Made Easy - Smart Donations
Missing Authorization vulnerability in RedNao Donations Made Easy – Smart Donations allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Donations Made Easy – Smart Donations: from n/a through 4.0.12.
network
low complexity
rednao CWE-862
8.8
2024-12-09 CVE-2023-49856 Missing Authorization vulnerability in Rednao Smart Forms
Missing Authorization vulnerability in RedNao Smart Forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Smart Forms: from n/a through 2.6.84.
network
low complexity
rednao CWE-862
8.8
2024-04-29 CVE-2024-33593 Unspecified vulnerability in Rednao Smart Forms
Missing Authorization vulnerability in RedNao Smart Forms.This issue affects Smart Forms: from n/a through 2.6.91.
network
low complexity
rednao
4.3
2024-03-16 CVE-2023-51486 Unspecified vulnerability in Rednao Woocommerce PDF Invoice Builder
Cross-Site Request Forgery (CSRF) vulnerability in RedNao WooCommerce PDF Invoice Builder.This issue affects WooCommerce PDF Invoice Builder: from n/a through 1.2.101.
network
low complexity
rednao
8.8
2023-11-18 CVE-2023-47551 Unspecified vulnerability in Rednao Donations Made Easy - Smart Donations
Cross-Site Request Forgery (CSRF) vulnerability in RedNao Donations Made Easy – Smart Donations.This issue affects Donations Made Easy – Smart Donations: from n/a through 4.0.12.
network
low complexity
rednao
8.8
2023-11-14 CVE-2023-47550 Unspecified vulnerability in Rednao Donations Made Easy - Smart Donations
Cross-Site Request Forgery (CSRF) vulnerability in RedNao Donations Made Easy – Smart Donations allows Stored XSS.This issue affects Donations Made Easy – Smart Donations: from n/a through 4.0.12.
network
low complexity
rednao
6.1
2023-11-06 CVE-2023-40207 Unspecified vulnerability in Rednao Donations Made Easy - Smart Donations
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RedNao Donations Made Easy – Smart Donations allows SQL Injection.This issue affects Donations Made Easy – Smart Donations: from n/a through 4.0.12.
network
low complexity
rednao
critical
9.8
2023-10-26 CVE-2023-46076 Unspecified vulnerability in Rednao Woocommerce PDF Invoice Builder
Unauth.
network
low complexity
rednao
6.1
2023-09-27 CVE-2023-40664 Unspecified vulnerability in Rednao Smart Donations
Unauth.
network
low complexity
rednao
6.1
2023-08-31 CVE-2023-4160 Unspecified vulnerability in Rednao Woocommerce PDF Invoice Builder
The WooCommerce PDF Invoice Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to, and including, 1.2.90 due to insufficient input sanitization and output escaping.
network
low complexity
rednao
4.8