Vulnerabilities (CVE)

Filtered by vendor E4jconnect Subscribe
Filtered by product Vikrentcar
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-1845 1 E4jconnect 1 Vikrentcar 2024-07-12 N/A 8.8 HIGH
The VikRentCar Car Rental Management System WordPress plugin before 1.3.2 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks
CVE-2023-23998 1 E4jconnect 1 Vikrentcar 2023-11-07 N/A 4.8 MEDIUM
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in E4J s.R.L. VikRentCar Car Rental Management System plugin <= 1.3.0 versions.