Eshop
Eshop Project · 3 CVEs
CVE-2013-10008
CRITICAL
sheilazpy eShop sql injection
Jan 6, 2023
CVE-2015-9413
MEDIUM
The eshop plugin through 6.3.13 for WordPress has CSRF with resultant XSS via the wp-admin/admin.php?page=eshop-downloa…
Sep 25, 2019
CVE-2015-3421
MEDIUM
The eshop_checkout function in checkout.php in the Wordpress Eshop plugin 6.3.11 and earlier does not validate variable…
Jul 21, 2017
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2013-10008 | sheilazpy eShop sql injection | CRITICAL | 0.64% | Jan 6, 2023 |
| CVE-2015-9413 | The eshop plugin through 6.3.13 for WordPress has CSRF with resultant XSS via the wp-admin/admin.php?page=eshop-downloads.php title parameter. | MEDIUM | 1.10% | Sep 25, 2019 |
| CVE-2015-3421 | The eshop_checkout function in checkout.php in the Wordpress Eshop plugin 6.3.11 and earlier does not validate variables in the "eshopcart" HTTP cookie, which… | MEDIUM | 1.29% | Jul 21, 2017 |
Showing 1 to 3 of 3 CVEs