Vulnerabilities in niteo
5 resultsVexday analysis
Niteo possui 4 vulnerabilidades registradas na base do Vexday, nenhuma delas em exploração ativa ou crítica. A fraqueza predominante é exposição de informações (CWE-200), e não há descobertas recentes nos últimos 90 dias, indicando um perfil de risco baixo e estável.
CVE-2020-36730HIGHCMP <= 3.8.1 - Missing AuthorizationEPSS 2.3%CVE-2023-1263MEDIUMCMP – Coming Soon & Maintenance Plugin by NiteoThemes <= 4.1.6 - Information ExposureEPSS 1.4%CVE-2026-6518HIGHCMP – Coming Soon & Maintenance Plugin by NiteoThemes <= 4.1.16 - Missing Authorization to Authenticated (Administrator+) Arbitrary File Upload and Remote Code ExecutionEPSS 1.0%CVE-2023-2159MEDIUMCMP – Coming Soon & Maintenance <= 4.1.7 - Maintenance Mode BypassEPSS 0.8%CVE-2026-12470HIGHCMP <= 4.1.17 - Authenticated (Editor+) Privilege Escalation via Arbitrary Option Update to cmp_ajax_import_settings AJAX ActionEPSS 0.3%