Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Landing Pages Project Subscribe
Filtered by product Landing Pages
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-4065 1 Landing Pages Project 1 Landing Pages 2015-05-28 3.5 LOW N/A
Cross-site scripting (XSS) vulnerability in shared/shortcodes/inbound-shortcodes.php in the Landing Pages plugin before 1.8.5 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the post parameter to wp-admin/post-new.php.
CVE-2015-4064 1 Landing Pages Project 1 Landing Pages 2015-05-28 6.5 MEDIUM N/A
SQL injection vulnerability in modules/module.ab-testing.php in the Landing Pages plugin before 1.8.5 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the post parameter in an edit delete-variation action to wp-admin/post.php.