Vulnerabilities (CVE)

Filtered by vendor Riverside Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-1208 1 Riverside 1 Http Headers 2023-08-08 N/A 7.2 HIGH
This HTTP Headers WordPress plugin before 1.18.11 allows arbitrary data to be written to arbitrary files, leading to a Remote Code Execution vulnerability.
CVE-2023-1207 1 Riverside 1 Http Headers 2023-08-08 N/A 7.2 HIGH
This HTTP Headers WordPress plugin before 1.18.8 has an import functionality which executes arbitrary SQL on the server, leading to an SQL Injection vulnerability.