VYPR

Google Analyticator

by Sumo

Source repositories

CVEs (5)

  • CVE-2015-4697HigSep 7, 2017
    risk 0.57cvss 8.8epss 0.01

    Cross-site request forgery (CSRF) vulnerability in Google Analyticator Wordpress Plugin before 6.4.9.3 rev @1183563.

  • CVE-2022-4323HigJan 23, 2023
    risk 0.47cvss 7.2epss 0.01

    The Analyticator WordPress plugin before 6.5.6 unserializes user input provided via the settings, which could allow high privilege users such as admin to perform PHP Object Injection when a suitable gadget is present

  • CVE-2022-3425HigJan 23, 2023
    risk 0.47cvss 7.2epss 0.01

    The Analyticator WordPress plugin before 6.5.6 unserializes user input provided via the settings, which could allow high-privilege users such as admin to perform PHP Object Injection when a suitable gadget is present.

  • CVE-2009-5158MedAug 22, 2019
    risk 0.40cvss 6.1epss 0.01

    The google-analyticator plugin before 5.2.1 for WordPress has insufficient HTML sanitization for Google Analytics API text.

  • CVE-2015-6238Sep 21, 2015
    risk 0.00cvss epss 0.03

    Multiple cross-site scripting (XSS) vulnerabilities in the Google Analyticator plugin before 6.4.9.6 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) ga_adsense, (2) ga_admin_disable_DimentionIndex, (3) ga_downloads_prefix, (4)…