← Back

Mail Masta Project

mail-masta_project

14 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Mail Masta
mail-masta

CVEs (14)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mail Masta Project
1Mail Masta
Nov 21, 2024
Sep 16, 2019
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The mail-masta plugin 1.0 for WordPress has local file inclusion in count_of_send.php and csvexport.php.
1Mail Masta Project
1Mail Masta
May 13, 2026
Mar 9, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/subscriber_list.php with the POST Parameter: subscriber_email.
1Mail Masta Project
1Mail Masta
May 13, 2026
Mar 9, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/subscriber_list.php with the POST Parameter: list_id.
1Mail Masta Project
1Mail Masta
May 13, 2026
Mar 9, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/campaign/campaign-delete.php with the GET Parameter: id.
1Mail Masta Project
1Mail Masta
May 13, 2026
Mar 9, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/lists/edit_member.php with the GET Parameter: member_id.
1Mail Masta Project
1Mail Masta
May 13, 2026
Mar 9, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/lists/edit_member.php with the GET Parameter: filter_list.
1Mail Masta Project
1Mail Masta
May 13, 2026
Mar 9, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/lists/edit-list.php with the GET Parameter: id.
1Mail Masta Project
1Mail Masta
May 13, 2026
Mar 9, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/lists/add_member.php with the GET Parameter: filter_list.
1Mail Masta Project
1Mail Masta
May 13, 2026
Mar 9, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/campaign/view-campaign.php with the GET Parameter: id.
1Mail Masta Project
1Mail Masta
May 13, 2026
Mar 9, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/campaign/view-campaign-list.php with the GET Parameter: id.
1Mail Masta Project
1Mail Masta
May 13, 2026
Feb 21, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/campaign_save.php (Requires authentication to Wordpress admin) with the POST Parameter: list_id.
1Mail Masta Project
1Mail Masta
May 13, 2026
Feb 21, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/campaign/count_of_send.php (Requires authentication to Wordpress admin) with the POST Parameter: camp_id...Show more
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/campaign/count_of_send.php (Requires authentication to Wordpress admin) with the POST Parameter: camp_id.Show less
1Mail Masta Project
1Mail Masta
May 13, 2026
Feb 21, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/lists/view-list.php (Requires authentication to Wordpress admin) with the GET Parameter: filter_list.
1Mail Masta Project
1Mail Masta
May 13, 2026
Feb 21, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/lists/csvexport.php (Unauthenticated) with the GET Parameter: list_id.