Vulnerabilities > Slidervilla
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-11-08 | CVE-2022-44741 | Cross-Site Request Forgery (CSRF) vulnerability in Slidervilla Testimonial Slider Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) in David Anderson Testimonial Slider plugin <= 1.3.1 on WordPress. | 8.8 |
2019-10-07 | CVE-2015-9454 | SQL Injection vulnerability in Slidervilla Smooth Slider The smooth-slider plugin before 2.7 for WordPress has SQL Injection via the wp-admin/admin.php?page=smooth-slider-admin current_slider_id parameter. | 8.8 |
2019-09-26 | CVE-2015-9417 | Cross-Site Request Forgery (CSRF) vulnerability in Slidervilla Testimonial Slider The testimonial-slider plugin through 1.2.1 for WordPress has CSRF with resultant XSS. | 6.5 |
2018-01-12 | CVE-2018-5374 | SQL Injection vulnerability in Slidervilla Dbox Slider The Dbox 3D Slider Lite plugin through 1.2.2 for WordPress has SQL Injection via settings\sliders.php (current_slider_id parameter). | 8.8 |
2018-01-12 | CVE-2018-5373 | SQL Injection vulnerability in Slidervilla Smooth Slider The Smooth Slider plugin through 2.8.6 for WordPress has SQL Injection via smooth-slider.php (trid parameter). | 8.8 |
2018-01-12 | CVE-2018-5372 | SQL Injection vulnerability in Slidervilla Testimonial Slider The Testimonial Slider plugin through 1.2.4 for WordPress has SQL Injection via settings\sliders.php (current_slider_id parameter). | 8.8 |