Vulnerabilidades en Unknown
5444 resultadosAnálisis Vexday
O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.
CVE-2021-24727—Block and Stop Bad Bots < 6.60 - Authenticated SQL InjectionsEPSS 1.7%CVE-2021-24728—Paid Member Subscriptions < 2.4.2 - Authenticated SQL InjectionEPSS 1.7%CVE-2021-24216—All-in-One WP Migration < 7.41 - Admin+ Arbitrary File Upload to RCEEPSS 1.7%CVE-2023-2023MEDIUMCustom 404 Pro < 3.7.3 - Reflected Cross-Site ScriptingEPSS 1.7%CVE-2022-25812—Transposh WordPress Translation < 1.0.8 - Admin+ RCEEPSS 1.7%CVE-2021-24949—The Plus Addons for Elementor Pro < 5.0.7 - Unauthenticated SQL InjectionEPSS 1.7%CVE-2022-0541—Flo Launch < 2.4.1 - Missing Authentication Allow Full Site TakeoverEPSS 1.7%CVE-2025-14124HIGHTeam < 5.0.11 - Unauthenticated SQLiEPSS 1.7%CVE-2023-1381HIGHWP Meta SEO < 4.5.5 - Author+ PHAR DeserializationEPSS 1.7%CVE-2023-1273—ND Shortcodes < 7.0 - Subscriber+ LFIEPSS 1.7%CVE-2022-1008—One Click Demo Import < 3.1.0 - Admin+ Arbitrary File UploadEPSS 1.7%CVE-2021-24695—Simple Download Monitor < 3.9.6 - Unauthenticated Log AccessEPSS 1.7%CVE-2021-24252—Event Banner <= 1.3 - Arbitrary File Upload to RCEEPSS 1.7%CVE-2018-3890HIGHAn exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D. A specially craftedEPSS 1.7%CVE-2022-1933—CDI < 5.1.9 - Reflected Cross-Site-ScriptingEPSS 1.7%CVE-2022-1165—Blackhole for Bad Bots < 3.3.2 - Arbitrary IP Address Blocking via IP SpoofingEPSS 1.7%CVE-2022-2926MEDIUMDownload Manager < 3.2.55 - Admin+ Arbitrary File/Folder Access via Path TraversalEPSS 1.7%CVE-2021-24875—eCommerce Product Catalog for WordPress < 3.0.39 - Reflected Cross-Site ScriptingEPSS 1.7%CVE-2022-2219—Unyson < 2.7.27 - Reflected Cross-Site ScriptingEPSS 1.7%CVE-2021-25085—WOOF - Products Filter for WooCommerce < 1.2.6.3 - Reflected Cross-Site ScriptingEPSS 1.7%