Vulnerabilidades en admintwentytwenty
6 resultadosAnálisis Vexday
O fornecedor admintwentytwenty possui 6 vulnerabilidades catalogadas, nenhuma delas sob ataque ativo no momento. A fraqueza dominante está relacionada a problemas de autorização inadequada (CWE-862), e não há registros de vulnerabilidades críticas ou publicações recentes nos últimos 90 dias, indicando um perfil de risco estável e de baixa prioridade imediata.
CVE-2025-3053HIGHUiPress lite | Effortless custom dashboards, admin themes and pages <= 3.5.07 - Authenticated (Subscriber+) Remote Code ExecutionEPSS 1.0%CVE-2025-1309HIGHUiPress lite | Effortless custom dashboards, admin themes and pages <= 3.5.04 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Options UpdateEPSS 0.5%CVE-2025-10938MEDIUMUiPress lite <= 3.5.09 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information ExposureEPSS 0.2%CVE-2025-11815MEDIUMUiPress lite | Effortless custom dashboards, admin themes and pages <= 3.5.08 - Missing Authorization to Authenticated (Subscriber+) Plugin Settings UpdateEPSS 0.2%CVE-2025-11003MEDIUMUiPress lite <= 3.5.09 - Missing Authorization to Authenticated (Subscriber+) Stored Cross-Site ScriptingEPSS 0.2%CVE-2026-2294MEDIUMUiPress lite | Effortless custom dashboards, admin themes and pages <= 3.5.09 - Missing Authorization to Authenticated (Subscriber+) Plugin Settings UpdateEPSS 0.2%