pluck
Web & CMS Pluginscommercial
Top products
Latest CVEs
The 7 most recently published vulnerabilities affecting pluck.
- CVE-2023-5013Pluck CMS Installation install.php cross site scripting2.6
- CVE-2023-25828Authenticate Remote Code Execution in Pluck CMS7.2
- CVE-2008-3851Multiple directory traversal vulnerabilities in Pluck CMS 4.5.2 on Windows allow remote attackers to include and execute arbitrary local files via a ..\ (dot dot backslash) in the (1) blogpost, (2)...5.0
- CVE-2008-3574Multiple cross-site scripting (XSS) vulnerabilities in Pluck 4.5.2, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) lang_footer parameter...2.6
- CVE-2008-3194Multiple directory traversal vulnerabilities in data/inc/themes/predefined_variables.php in pluck 4.5.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the...6.8
- CVE-2007-4180Directory traversal vulnerability in data/inc/theme.php in Pluck 4.3, when register_globals is enabled, allows remote attackers to read arbitrary local files via a .. (dot dot) in the file paramete...5.0
- CVE-2007-4181PHP remote file inclusion vulnerability in data/inc/theme.php in Pluck 4.3, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the dir parameter. ...6.8