Vulnerabilities (CVE)

Filtered by vendor Photocati Media Subscribe
Filtered by product Photocrati
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-2216 1 Photocati Media 1 Photocrati 2023-12-10 7.5 HIGH N/A
SQL injection vulnerability in ecomm-sizes.php in the Photocrati theme 4.x for WordPress allows remote attackers to execute arbitrary SQL commands via the prod_id parameter.
CVE-2014-100016 1 Photocati Media 1 Photocrati 2023-12-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in photocrati-gallery/ecomm-sizes.php in the Photocrati theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the prod_id parameter.