Lucene search

K

Digitalzoomstudio Security Vulnerabilities

cve
cve

CVE-2014-3923

Multiple cross-site scripting (XSS) vulnerabilities in the Digital Zoom Studio (DZS) Video Gallery plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the logoLink parameter to (1) preview.swf, (2) preview_skin_rouge.swf, (3) preview_allchars.swf, or (4)...

5.9AI Score

0.002EPSS

2022-10-03 04:20 PM
26
cve
cve

CVE-2021-39316

The Zoomsounds plugin <= 6.45 for WordPress allows arbitrary files, including sensitive configuration files such as wp-config.php, to be downloaded via the dzsap_download action using directory traversal in the link...

7.5CVSS

7.5AI Score

0.375EPSS

2021-08-31 12:15 PM
52
cve
cve

CVE-2015-9471

The dzs-zoomsounds plugin through 2.0 for WordPress has admin/upload.php arbitrary file...

9.8CVSS

9.5AI Score

0.005EPSS

2019-10-10 05:15 PM
71
cve
cve

CVE-2014-9094

Multiple cross-site scripting (XSS) vulnerabilities in deploy/designer/preview.php in the Digital Zoom Studio (DZS) Video Gallery plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) swfloc or (2) designrand...

5.9AI Score

0.259EPSS

2014-11-26 03:59 PM
28