Search
Search Results (2 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2025-2247 | 1 Mantus667 | 1 Wp-pmanager | 2025-06-04 | 5.4 Medium |
| The WP-PManager WordPress plugin through 1.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack | ||||
| CVE-2025-2248 | 1 Mantus667 | 1 Wp-pmanager | 2025-06-04 | 5.4 Medium |
| The WP-PManager WordPress plugin through 1.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks | ||||
Page 1 of 1.