A vulnerability has been found in YouTube Video Inserter Plugin up to 1.2.1.0 on WordPress (Social Network Software) and classified as problematic. This vulnerability affects an unknown code of the file ~/adminUI/settings.php. Applying a patch is able to eliminate this problem. The bugfix is ready for download at plugins.trac.wordpress.org.
YouTube Video Inserter Plugin up to 1.2.1.0 on WordPress ~/adminUI/settings.php $_SERVER[“PHP_SELF”] cross site scripting
- Virtual Patching
- September 10, 2021
- 5:04 pm
CVE-2022-37452 : EXIM UP TO 4.94 ALIAS LIST HOST.C HOST_NAME_LOOKUP SENDER_HOST_NAME HEAP-BASED OVERFLOW
Description Exim before 4.95 has a heap-based buffer overflow for the alias list in host_name_lookup in host.c when sender_host_name is
CVE-2022-27535 : KASPERSKY VPN SECURE CONNECTION UP TO 21.5 ON WINDOWS DENIAL OF SERVICE
Description Kaspersky VPN Secure Connection for Windows version up to 21.5 was vulnerable to arbitrary file deletion via abuse of
CVE-2022-32965 : OMICARD EDM HARD-CODED CREDENTIALS
Description OMICARD EDM has a hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized