Vulnerabilities (CVE)

Filtered by vendor Quttera Subscribe
Filtered by product Quttera Web Malware Scanner
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-6222 1 Quttera 1 Quttera Web Malware Scanner 2024-11-21 N/A 7.2 HIGH
IThe Quttera Web Malware Scanner WordPress plugin before 3.4.2.1 does not validate user input used in a path, which could allow users with an admin role to perform path traversal attacks
CVE-2023-6065 1 Quttera 1 Quttera Web Malware Scanner 2024-11-21 N/A 5.3 MEDIUM
The Quttera Web Malware Scanner WordPress plugin before 3.4.2.1 doesn't restrict access to detailed scan logs, which allows a malicious actor to discover local paths and portions of the site's code