Vulnerabilities > WP Statistics

DATE CVE VULNERABILITY TITLE RISK
2017-07-07 CVE-2017-10991 Cross-site Scripting vulnerability in Wp-Statistics WP Statistics
The WP Statistics plugin through 12.0.9 for WordPress has XSS in the rangestart and rangeend parameters on the wps_referrers_page page.
network
low complexity
wp-statistics CWE-79
6.1
2017-04-28 CVE-2017-2147 Cross-site Scripting vulnerability in Wp-Statistics WP Statistics
Cross-site scripting vulnerability in WP Statistics version 12.0.4 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
low complexity
wp-statistics CWE-79
6.1
2017-04-28 CVE-2017-2136 Cross-site Scripting vulnerability in WP Statistics WP Statistics
Cross-site scripting vulnerability in WP Statistics version 12.0.4 and earlier allows remote attackers to inject arbitrary web script or HTML via specially crafted HTTP Referer headers.
network
low complexity
wp-statistics CWE-79
6.1
2017-04-28 CVE-2017-2135 Cross-site Scripting vulnerability in Wp-Statistics WP Statistics
Cross-site scripting vulnerability in WP Statistics version 12.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
low complexity
wp-statistics CWE-79
6.1