CVE Tools

Collne-inc

8 CVEs tracked since 2023. Since Sep 2023, none of them reached CISA KEV.

Collne-inc CVEs per month

Sep 2023 to Sep 2023. Point at a month, or focus the strip and use the arrow keys.
Collne-inc CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2023-0980

Products

The products that kept showing up in Collne-inc's monthly top three, with their CVEs summed over those months.

  1. Welcart E-commerce81 month

Latest CVEs

The 12 most recently published vulnerabilities affecting Collne-inc.

  1. CVE-2023-50847WordPress Welcart e-Commerce Plugin <= 2.9.3 is vulnerable to SQL Injection7.6
  2. CVE-2023-43614Cross-site scripting vulnerability in Order Data Edit page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a remote unauthenticated attacker to inject an arbitrary script.6.1
  3. CVE-2023-43610SQL injection vulnerability in Order Data Edit page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with editor (without setting authority) or higher privilege to perform unintended data...8.8
  4. CVE-2023-43493SQL injection vulnerability in Item List page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with author or higher privilege to obtain sensitive information.4.9
  5. CVE-2023-43484Cross-site scripting vulnerability in Item List page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a remote unauthenticated attacker to inject an arbitrary script.6.1
  6. CVE-2023-41962Cross-site scripting vulnerability in Credit Card Payment Setup page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a remote unauthenticated attacker to inject an arbitrary script in the page.6.1
  7. CVE-2023-41233Cross-site scripting vulnerability in Item List page registration process of Welcart e-Commerce versions 2.7 to 2.8.21 allows a remote unauthenticated attacker to inject an arbitrary script.6.1
  8. CVE-2023-40532Path traversal vulnerability in Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with author or higher privilege to obtain partial information of the files on the web server.4.3
  9. CVE-2023-40219Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with editor or higher privilege to upload an arbitrary file to an unauthorized directory.7.2
  10. CVE-2023-22705WordPress Welcart e-Commerce Plugin <= 2.8.10 is vulnerable to Cross Site Scripting (XSS)7.1
  11. CVE-2022-41840WordPress Welcart eCommerce plugin <= 2.7.7 - Unauth. Directory Traversal vulnerability7.5
  12. CVE-2021-20734Cross-site scripting vulnerability in Welcart e-Commerce versions prior to 2.2.4 allows remote attackers to inject arbitrary script or HTML via unspecified vectors.6.1

The record

Peak rank
#82 in Sep 2023
Busiest month shown
Sep 2023, 8 CVEs
Months with a KEV entry
0 since Sep 2023
Monthly snapshots
1 since 2023
Collne-inc's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store