Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Awesome Support MEDIUM 6.5
CVE-2023-49857

Missing Authorization vulnerability in awesomesupport Awesome Support awesome-support allows Exploiting Incorrectly Configured Access Control Securit…

Fix: 6.1.8+
Fix from $1,600 2024-12-09
Awesome Support MEDIUM 5.4
CVE-2023-49757

Missing Authorization vulnerability in awesomesupport Awesome Support awesome-support allows Exploiting Incorrectly Configured Access Control Securit…

Fix: 6.1.11+
Fix from $1,600 2024-12-09
Awesome Support MEDIUM 5.4
CVE-2023-48324

Missing Authorization vulnerability in awesomesupport Awesome Support awesome-support allows Exploiting Incorrectly Configured Access Control Securit…

Fix: 6.1.5+
Fix from $1,600 2024-12-09
Awesome Support HIGH 8.8
CVE-2024-35741

Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a through 6.1.7.

Fix: 6.1.8+
Fix from $1,950 2024-06-10
Awesome Support MEDIUM 5.4
CVE-2024-24716

Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a through 6.1.6.

Fix: 6.1.7+
Fix from $1,600 2024-06-09
Awesome Support CRITICAL 9.8
CVE-2024-30539

Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a through 6.1.7.

Fix: 6.1.8+
Fix from $2,300 2024-06-09
Awesome Support MEDIUM 5.3
CVE-2024-0596

The Awesome Support – WordPress HelpDesk & Support Plugin plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabili…

Fix: 6.1.8+
Fix from $1,600 2024-02-10
Awesome Support HIGH 8.8
CVE-2024-0594

The Awesome Support – WordPress HelpDesk & Support Plugin plugin for WordPress is vulnerable to union-based SQL Injection via the 'q' parameter of th…

Fix: after 6.1.7
Fix from $1,950 2024-02-10
Awesome Support HIGH 8.8
CVE-2023-51538

Cross-Site Request Forgery (CSRF) vulnerability in Awesome Support Team Awesome Support – WordPress HelpDesk & Support Plugin.This issue affects Awes…

Fix: after 6.1.5
Fix from $1,950 2024-01-05
Awesome Support HIGH 8.8
CVE-2023-48323

Cross-Site Request Forgery (CSRF) vulnerability in Awesome Support Team Awesome Support – WordPress HelpDesk & Support Plugin allows Cross Site Reque…

Fix: after 6.1.4
Fix from $1,950 2023-11-30
Awesome Support HIGH 8.1
CVE-2023-5355

The Awesome Support WordPress plugin before 6.1.5 does not sanitize file paths when deleting temporary attachment files, allowing a ticket submitter …

Fix: 6.1.5+
Fix from $1,950 2023-11-06
Awesome Support MEDIUM 6.1
CVE-2023-5354

The Awesome Support WordPress plugin before 6.1.5 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflec…

Fix: 6.1.5+
Fix from $1,600 2023-11-06
Awesome Support MEDIUM 6.5
CVE-2022-3511

The Awesome Support WordPress plugin before 6.1.2 does not ensure that the exported tickets archive to be downloaded belongs to the user making the r…

Fix: 6.1.2+
Fix from $1,600 2022-11-28
Awesome Support MEDIUM 5.4
CVE-2022-38073

Multiple Authenticated (custom specific plugin role) Persistent Cross-Site Scripting (XSS) vulnerability in Awesome Support plugin <= 6.0.7 at WordPr…

Fix: after 6.0.7
Fix from $1,600 2022-09-21
Awesome Support MEDIUM 5.4
CVE-2021-36919

Multiple Authenticated Reflected Cross-Site Scripting (XSS) vulnerabilities in WordPress Awesome Support plugin (versions <= 6.0.6), vulnerable param…

Fix: after 6.0.6
Fix from $1,600 2021-11-26
Awesome Support HIGH 7.5
CVE-2015-9318

The awesome-support plugin before 3.1.7 for WordPress has a security issue in which shortcodes are allowed in replies.

Fix: 3.1.7+
Fix from $1,950 2019-08-20
Awesome Support MEDIUM 6.1
CVE-2015-9317

The awesome-support plugin before 3.1.7 for WordPress has XSS via custom information messages.

Fix: 3.1.7+
Fix from $1,600 2019-08-20