VYPR

Visitors Online

by Bestwebsoft

CVEs (4)

  • CVE-2015-9325CriAug 16, 2019
    risk 0.64cvss 9.8epss 0.02

    The visitors-online plugin before 0.4 for WordPress has SQL injection.

  • CVE-2021-24350MedJun 14, 2021
    risk 0.40cvss 6.1epss 0.01

    The Visitors WordPress plugin through 0.3 is affected by an Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability. The plugin would display the user's user agent string without validation or encoding within the WordPress admin panel.

  • CVE-2017-18537MedAug 21, 2019
    risk 0.40cvss 6.1epss 0.02

    The visitors-online plugin before 1.0.0 for WordPress has multiple XSS issues.

  • CVE-2017-2171MedMay 22, 2017
    risk 0.40cvss 6.1epss 0.01

    Cross-site scripting vulnerability in Captcha prior to version 4.3.0, Car Rental prior to version 1.0.5, Contact Form Multi prior to version 1.2.1, Contact Form prior to version 4.0.6, Contact Form to DB prior to version 1.5.7, Custom Admin Page prior to version 0.1.2, Custom…