Vulnerabilidades en Unknown

5444 resultados
Análisis Vexday

O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.

CVE-2021-24839—SupportCandy < 2.2.5 - Unauthenticated Arbitrary Ticket DeletionEPSS 1.2%CVE-2022-1801—Very Simple Contact Form < 11.6 - Captcha bypassEPSS 1.2%CVE-2021-24142—301 Redirects - Easy Redirect Manager < 2.51 - Authenticated SQL InjectionEPSS 1.2%CVE-2021-24304—Newsmag < 5.0 - Unauthenticated Reflected Cross-site Scripting (XSS)EPSS 1.2%CVE-2022-1194—Mobile Events Manager < 1.4.8 - Admin+ CSV InjectionEPSS 1.2%CVE-2021-24994—WPvivid Backup and Migration Plugin < 0.9.69 - Unauthenticated Stored Cross-Site ScriptingEPSS 1.2%CVE-2023-7082HIGHWP All Import < 3.7.3 - Admin+ Arbitrary File Upload to RCEEPSS 1.2%CVE-2021-24138—AdRotate < 5.8.4 - Authenticated SQL InjectionEPSS 1.2%CVE-2022-0989—NS WooCommerce Watermark <= 2.11.3 - Abuse of FunctionalityEPSS 1.2%CVE-2021-24942HIGHMenu Item Visibility Control <= 0.5 - Admin+ Arbitrary PHP Code ExecutionEPSS 1.2%CVE-2021-24864—WP Cloudy < 4.4.9 - Admin+ SQL InjectionEPSS 1.2%CVE-2022-3334HIGHEasy WP SMTP < 1.5.0 - Admin+ PHP Objection InjectionEPSS 1.2%CVE-2022-3380HIGHCustomizer Export/Import < 0.9.5 - Admin+ PHP Objection InjectionEPSS 1.2%CVE-2021-24964MEDIUMLiteSpeed Cache < 4.4.4 - IP Check Bypass to Unauthenticated Stored XSSEPSS 1.2%CVE-2022-3125—Frontend File Manager < 21.3 - Subscriber+ Arbitrary File UploadEPSS 1.2%CVE-2022-3374HIGHOcean Extra < 2.0.5 - Admin+ PHP Objection InjectionEPSS 1.2%CVE-2022-3366HIGHPublishPress Capabilities < 2.5.2 - Admin+ PHP Objection InjectionEPSS 1.2%CVE-2021-25121—Rating by BestWebSoft < 1.6 - Rating Denial of ServiceEPSS 1.2%CVE-2026-1368HIGHVideo Conferencing with Zoom API < 4.6.6 - Unauthenticated SDK Signature GenerationEPSS 1.2%CVE-2022-2559—Fluent Support < 1.5.8 - Admin+ SQLiEPSS 1.2%