Vulnerabilidades en Unknown
5444 resultadosAnálisis Vexday
O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.
CVE-2021-25055—FeedWordPress < 2022.0123 - Reflected Cross-Site Scripting (XSS)EPSS 2.0%CVE-2023-6000MEDIUMPopup Builder < 4.2.3 - Unauthenticated Stored XSSEPSS 2.0%CVE-2022-0320—Essential Addons for Elementor < 5.0.5 - Unauthenticated LFIEPSS 2.0%CVE-2024-13726HIGHThemes Coder <= 1.3.4 - Unauthenticated SQLiEPSS 2.0%CVE-2021-24493—Shopp eCommerce <= 1.4 - Unauthenticated Arbitrary File UploadEPSS 2.0%CVE-2022-3360HIGHLearnPress < 4.1.7.2 - Unauthenticated PHP Object Injection via REST APIEPSS 2.0%CVE-2021-24342—JNews < 8.0.6 - Reflected Cross-Site Scripting (XSS)EPSS 2.0%CVE-2023-3345—LMS by Masteriyo < 1.6.8 - Information ExposureEPSS 2.0%CVE-2023-5604CRITICALAsgaros Forum < 2.7.1 - Unauthenticated Arbitrary File UploadEPSS 2.0%CVE-2024-5975CRITICALCZ Loan Management <= 1.1 - Unauthenticated SQLiEPSS 2.0%CVE-2022-1916—Active Products Tables for WooCommerce < 1.0.5 - Reflected Cross-Site-ScriptingEPSS 1.9%CVE-2023-6750HIGHClone < 2.4.3 - Unauthenticated Backup DownloadEPSS 1.9%CVE-2022-0271—LearnPress < 4.1.6 - Reflected Cross-Site ScriptingEPSS 1.9%CVE-2022-1756—Newsletter < 7.4.5 - Reflected Cross-Site ScriptingEPSS 1.9%CVE-2021-24987—Super Socializer < 7.13.30 - Reflected Cross-Site ScriptingEPSS 1.9%CVE-2018-3898HIGHAn exploitable code execution vulnerability exists in the QR code scanning functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafteEPSS 1.9%CVE-2021-25028—Event Tickets < 5.2.2 - Open RedirectEPSS 1.9%CVE-2018-3899HIGHAn exploitable code execution vulnerability exists in the QR code scanning functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafteEPSS 1.9%CVE-2023-7165HIGHJetBackup < 2.0.9.9 - Directory Listing Exposing BackupsEPSS 1.9%CVE-2021-24551—Edit Comments <= 0.3 - Unauthenticated SQL InjectionEPSS 1.9%