Filtered by vendor Landing Pages Project Subscriptions
Filtered by product Landing Pages Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2015-4065 1 Landing Pages Project 1 Landing Pages 2015-05-28 N/A
Cross-site scripting (XSS) vulnerability in shared/shortcodes/inbound-shortcodes.php in the Landing Pages plugin before 1.8.5 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the post parameter to wp-admin/post-new.php.
CVE-2015-4064 1 Landing Pages Project 1 Landing Pages 2015-05-28 N/A
SQL injection vulnerability in modules/module.ab-testing.php in the Landing Pages plugin before 1.8.5 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the post parameter in an edit delete-variation action to wp-admin/post.php.