Vulnerabilities > Zoho > Salesiq > 1.0.4

DATE CVE VULNERABILITY TITLE RISK
2019-08-27 CVE-2019-15645 Cross-Site Request Forgery (CSRF) vulnerability in Zoho Salesiq
The zoho-salesiq plugin before 1.0.9 for WordPress has CSRF.
network
zoho CWE-352
6.8
2019-08-27 CVE-2019-15644 Cross-site Scripting vulnerability in Zoho Salesiq
The zoho-salesiq plugin before 1.0.9 for WordPress has stored XSS.
network
zoho CWE-79
4.3
2019-07-05 CVE-2019-5963 Cross-Site Request Forgery (CSRF) vulnerability in Zoho Salesiq
Cross-site request forgery (CSRF) vulnerability in Zoho SalesIQ 1.0.8 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
zoho CWE-352
6.8
2019-07-05 CVE-2019-5962 Cross-site Scripting vulnerability in Zoho Salesiq
Cross-site scripting vulnerability in Zoho SalesIQ 1.0.8 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
zoho CWE-79
4.3