CVE-2025-26918
- EPSS 0.09%
- Veröffentlicht 03.03.2025 14:15:56
- Zuletzt bearbeitet 17.03.2025 17:57:36
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in enituretechnology Small Package Quotes – Unishippers Edition allows Reflected XSS. This issue affects Small Package Quotes – Unishippers Edition: fr...
CVE-2024-13491
- EPSS 0.48%
- Veröffentlicht 19.02.2025 12:15:31
- Zuletzt bearbeitet 25.02.2025 20:33:23
The Small Package Quotes – For Customers of FedEx plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, 4.3.1 due to insufficient escaping on the user supplied pa...
CVE-2024-13533
- EPSS 0.6%
- Veröffentlicht 19.02.2025 12:15:31
- Zuletzt bearbeitet 25.02.2025 20:37:27
The Small Package Quotes – USPS Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, 1.3.5 due to insufficient escaping on the user supplied parameter and lack of sufficient pre...
CVE-2024-13534
- EPSS 0.48%
- Veröffentlicht 19.02.2025 12:15:31
- Zuletzt bearbeitet 25.02.2025 20:30:26
The Small Package Quotes – Worldwide Express Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, 5.2.18 due to insufficient escaping on the user supplie...
CVE-2024-13532
- EPSS 0.6%
- Veröffentlicht 12.02.2025 12:15:29
- Zuletzt bearbeitet 25.02.2025 20:37:35
The Small Package Quotes – Purolator Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, 3.6.4 due to insufficient escaping on the user supplied paramet...
CVE-2024-13475
- EPSS 0.94%
- Veröffentlicht 12.02.2025 10:15:11
- Zuletzt bearbeitet 25.02.2025 20:37:56
The Small Package Quotes – UPS Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, 4.5.16 due to insufficient escaping on the user supplied parameter and lack of sufficient pre...