Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Lam Que Chi

Researcher fromPatchStack
#16519of 53,633
16.3Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2024-35921
9.8
2024-12-06
WordPress · Wp Mailster · CVE-2024-53807
**Name of the Vulnerable Software and Affected Versions** WP Mailster versions 1.8.16.0 and earlier **Description** The issue is related to the improper neutralization of special elements used in an SQL command, which allows for Blind SQL Injection. This means that an attacker could potentially inject malicious SQL code into the application, leading to unauthorized access or modification of data. **Recommendations** For WP Mailster versions 1.8.16.0 and earlier, update to a version later than 1.8.16.0 to resolve the issue. At the moment, there is no information about other specific mitigation measures for this vulnerability.
PT-2024-35845
6.5
2024-11-28
WordPress · Wp Mailster · CVE-2024-53737
**Name of the Vulnerable Software and Affected Versions** WP Mailster versions 1.8.16.0 and earlier **Description** The issue is related to Improper Neutralization of Input During Web Page Generation, also known as 'Cross-site Scripting', which allows Stored XSS. This enables exploitation of web pages. **Recommendations** For WP Mailster versions 1.8.16.0 and earlier, update to a version later than 1.8.16.0 to resolve the issue. At the moment, there is no information about other specific mitigation measures for this vulnerability.