Vulnerabilities (CVE)

Filtered by vendor Avenirsoft Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-9442 1 Avenirsoft 1 Directdownload 2024-02-28 4.3 MEDIUM 6.5 MEDIUM
The avenirsoft-directdownload plugin 1.0 for WordPress has CSRF with resultant XSS via wp-admin/admin.php?page=avenir_plugin.