Vulnerabilities (CVE)

Filtered by vendor Genetechsolutions Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24239 1 Genetechsolutions 1 Pie Register 2021-04-30 4.3 MEDIUM 6.1 MEDIUM
The Pie Register – User Registration Forms. Invitation based registrations, Custom Login, Payments WordPress plugin before 3.7.0.1 does not sanitise the invitaion_code GET parameter when outputting it in the Activation Code page, leading to a reflected Cross-Site Scripting issue.
CVE-2019-1010207 1 Genetechsolutions 1 Pie Register 2019-07-29 4.3 MEDIUM 6.1 MEDIUM
Genetechsolutions Pie Register 3.0.15 is affected by: Cross Site Scripting (XSS). The impact is: Stealing of session cookies. The component is: File: Login. Parameters: interim-login, wp-lang, and supplied URL. The attack vector is: If a victim clicks a malicious link, the attacker can steal his/her account. The fixed version is: 3.0.16.