VYPR

Wp Insert

by WordPress

CVEs (2)

  • CVE-2014-125111LowApr 8, 2024
    risk 0.23cvss 3.5epss 0.00

    A vulnerability was found in namithjawahar Wp-Insert up to 2.0.8 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting. The attack may be launched remotely. Upgrading to version 2.0.9 is able to…

  • CVE-2018-17573Sep 28, 2018
    risk 0.00cvss epss 0.02

    The Wp-Insert plugin through 2.4.2 for WordPress allows upload of arbitrary PHP code because of the exposure and configuration of FCKeditor under fckeditor/editor/filemanager/browser/default/browser.html, fckeditor/editor/filemanager/connectors/test.html, and…