WordPress security by component
Wp Symposium
Plugin description
Wp Symposium is a WordPress component with 10 published CVE records in this archive. The latest tracked vulnerability was published Sep 26, 2019; the highest CVE/CNA score is 7.5.
Plugin slug:
wp-symposiumLatest vulnerability
CVE-2015-9414: Wp Symposium: Cross-site scripting
Wp Symposium is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
| Safe version |
|
||
|---|---|---|---|
| Sep 26, 2019 |
CVE-2015-9414
Wp Symposium: Cross-site scripting
Wp Symposium is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.1
NVD6.1
|
| Aug 19, 2015 |
CVE-2015-6522
Wp Symposium: SQL injection
Wp Symposium is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE7.5
NVD7.5
|
| May 15, 2015 |
CVE-2015-3325
Wp Symposium: SQL injection
Wp Symposium is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE7.5
NVD7.5
|
| Jan 13, 2015 |
CVE-2014-10021
Wp Symposium: A security weakness
Wp Symposium is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE7.5
NVD7.5
|
| Dec 24, 2014 |
CVE-2014-8810
Wp Symposium: SQL injection
Wp Symposium is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE6.5
NVD6.5
|
| Dec 24, 2014 |
CVE-2014-8809
Wp Symposium: Cross-site scripting
Wp Symposium is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Mar 28, 2014 |
CVE-2013-2695
Wp Symposium: Cross-site scripting
Wp Symposium is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Mar 28, 2014 |
CVE-2013-2694
Wp Symposium: An open redirect
Wp Symposium is affected by an open redirect. Exposure depends on how the affected operation is made reachable by the site. A crafted link can redirect visitors from the trusted site to an attacker-controlled destination.
|
See mitigation notes |
CVE5.8
NVD5.8
|
| Jan 04, 2012 |
CVE-2011-5051
Wp Symposium: A security weakness
Wp Symposium is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE7.5
NVD7.5
|
| Dec 27, 2011 |
CVE-2011-3841
Wp Symposium: Cross-site scripting
Wp Symposium is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE4.3
NVD4.3
|