Netweblogic maintains a small portfolio of WordPress plugins, including Login with AJAX, Events Manager, and Events Manager Pro, that extend authentication and event-management functionality on WordPress sites. Its vulnerability exposure is concentrated in application-layer input-handling weaknesses, primarily cross-site scripting and cross-site request forgery flaws characteristic of web-facing plugin architectures. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Netweblogic over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-2707MEDIUM Cross-site request forgery (CSRF) vulnerability in the Login With Ajax plugin before 3.1 for WordPress allows remote attackers to hijack the authentication of arbitrary users for r | May 10, 2013 | 6.8 | 18 | NO | NO |
CVE-2012-2759MEDIUM Cross-site scripting (XSS) vulnerability in login-with-ajax.php in the Login With Ajax (aka login-with-ajax) plugin before 3.0.4.1 for WordPress allows remote attackers to inject a | May 22, 2012 | 4.3 | 18 | NO | NO |
CVE-2012-4283MEDIUM Cross-site scripting (XSS) vulnerability in the Login With Ajax plugin before 3.0.4.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the callback | Aug 13, 2012 | 4.3 | 17 | NO | NO |
CVE-2013-1407MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in the Events Manager plugin before 5.3.5 and Events Manager Pro plugin before 2.2.9 for WordPress allow remote attackers to inj | May 13, 2014 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Netweblogic.
Media articles that mention a CVE ID that affects a product developed by Netweblogic — matched by CVE ID, not by vendor name.