Vulnerabilidades en AA-Team
23 resultadosCVE-2024-33544CRITICALWordPress WZone plugin <= 14.0.10 - Unauthenticated SQL Injection vulnerabilityEPSS 0.6%CVE-2025-7401CRITICALPremium Age Verification / Restriction for WordPress <= 3.0.2 - Unauthenticated Arbitrary File Read and Write via remote_tunnel.phpEPSS 0.5%CVE-2024-33546CRITICALWordPress WZone plugin <= 14.0.10 - Arbitrary SQL Update Execution vulnerabilityEPSS 0.5%CVE-2024-33549HIGHWordPress WZone plugin <= 14.0.10 - Privilege Escalation vulnerabilityEPSS 0.5%CVE-2024-33547HIGHWordPress WZone plugin <= 14.0.10 - Site Wide Broken Access Control vulnerabilityEPSS 0.4%CVE-2026-27040HIGHWordPress WZone plugin <= 14.0.31 - Arbitrary File Deletion vulnerabilityEPSS 0.4%CVE-2024-33548HIGHWordPress WZone plugin <= 14.0.10 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.4%CVE-2024-33545MEDIUMWordPress WZone plugin <= 14.0.10 - Unauthenticated Broken Access Control vulnerabilityEPSS 0.4%CVE-2025-28973MEDIUMWordPress Pro Bulk Watermark Plugin for WordPress <= 2.0 - Path Traversal VulnerabilityEPSS 0.3%CVE-2025-49403HIGHWordPress Premium Age Verification / Restriction for WordPress Plugin <= 3.0.2 - Arbitrary File Download VulnerabilityEPSS 0.3%CVE-2025-4956MEDIUMWordPress Pro Bulk Watermark Plugin for WordPress Theme <= 2.0 - Path Traversal VulnerabilityEPSS 0.3%CVE-2025-29004HIGHPrivilege Escalation Vulnerability in AA-Team WordPress pluginsEPSS 0.3%CVE-2026-27039HIGHWordPress WZone plugin <= 14.0.31 - SQL Injection vulnerabilityEPSS 0.3%CVE-2025-14361HIGHWordPress Woocommerce Envato Affiliates plugin <= 1.2.1 - Settings Change vulnerabilityEPSS 0.2%CVE-2025-30633CRITICALWordPress Amazon Native Shopping Recommendations Plugin <= 1.3 - SQL Injection VulnerabilityEPSS 0.2%CVE-2022-27628MEDIUMWordPress WZone – Lite Version Plugin <= 3.1 Lite is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.2%CVE-2025-31044HIGHWordPress Premium SEO Pack <= 3.3.2 - SQL Injection VulnerabilityEPSS 0.2%CVE-2025-30628HIGHWordPress Amazon Affiliates Addon for WPBakery Page Builder (formerly Visual Composer) plugin <= 1.2 - SQL Injection VulnerabilityEPSS 0.2%CVE-2025-53297HIGHWordPress Woocommerce Envato Affiliates plugin <= 1.2.1 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2026-25473MEDIUMWordPress WZone plugin <= 14.0.31 - Broken Access Control vulnerabilityEPSS 0.2%