Sandbox

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Sandbox 0.4

    Open

    The Sandbox plugin used in WordPress is at risk of Reflected Cross-Site Scripting. This is because the 'debug' feature in all versions, including 0.4, does not properly clean the input and output. Th...

    Read More
  • Access violation vulnerability in Sandbox 0.4

    Open

    The Sandbox plugin for WordPress has a security issue that allows unauthorized users to access it. This is because there is a missing check for certain permissions on a specific action called export_...

    Read More
  • Access violation vulnerability in Sandbox 1.6.1

    Open

    The Sandbox WordPress theme, up to version 1.6.1, is vulnerable to Full Path Disclosure. This means that unauthenticated attackers can figure out the exact location of files on the server.

    Read More
  • Input validation vulnerability in Sandbox 1.6.1

    Open

    The Sandbox theme for WordPress, up to and including version 1.6.1, is vulnerable to malicious files being uploaded to the affected website's server. This is because the uploadify.php file does not v...

    Read More