2 results (0.006 seconds)

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

27 Dec 2023 — Unrestricted Upload of File with Dangerous Type vulnerability in Pixelemu TerraClassifieds – Simple Classifieds Plugin.This issue affects TerraClassifieds – Simple Classifieds Plugin: from n/a through 2.0.3. Vulnerabilidad de carga sin restricciones de archivos con tipo peligroso en Pixelemu TerraClassifieds – Simple Classifieds Plugin. Este problema afecta a TerraClassifieds – Simple Classifieds Plugin: desde n/a hasta 2.0.3. The TerraClassifieds – Simple Classifieds Plugin plugin for WordPress is vulnerab... • https://patchstack.com/database/vulnerability/terraclassifieds/wordpress-terraclassifieds-plugin-2-0-3-unauthenticated-arbitrary-file-upload-vulnerability?_s_id=cve • CWE-434: Unrestricted Upload of File with Dangerous Type •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

27 Dec 2023 — Cross-Site Request Forgery (CSRF) vulnerability in Pixelemu TerraClassifieds.This issue affects TerraClassifieds: from n/a through 2.0.3. Vulnerabilidad de Cross-Site Request Forgery (CSRF) en Pixelemu TerraClassifieds. Este problema afecta a TerraClassifieds: desde n/a hasta 2.0.3. The TerraClassifieds plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.0.3. This is due to missing or incorrect nonce validation on one of its functions. • https://patchstack.com/database/vulnerability/terraclassifieds/wordpress-terraclassifieds-plugin-2-0-3-cross-site-request-forgery-csrf-to-account-takeover-vulnerability?_s_id=cve • CWE-352: Cross-Site Request Forgery (CSRF) •