Vulnerabilidades en unknown
4715 resultadosAnálisis Vexday
O fornecedor acumula 13 vulnerabilidades na base, das quais 2 são críticas (CVSS ≥ 9.0), mas nenhuma está sob ataque ativo no momento. A fraqueza dominante é CWE-121 (stack-based buffer overflow), um vetor clássico de exploração com potencial elevado. A ausência de publicações recentes nos últimos 90 dias sugere risco estabilizado, porém a presença de críticas demanda atenção continuada ao aplicar patches.
CVE-2022-0747—Infographic Maker - iList < 4.3.8 - Unauthenticated SQL InjectionEPSS 14.9%CVE-2022-0434—Page Views Count < 2.4.15 - Unauthenticated SQL InjectionEPSS 14.8%CVE-2021-24285—Car Seller - Auto Classifieds Script <= 2.1.0 - Unauthenticated SQL InjectionEPSS 14.7%CVE-2021-24175—The Plus Addons for Elementor Page Builder < 4.1.7 - Authentication BypassEPSS 14.5%CVE-2023-6620HIGHPost SMTP < 2.8.7 - Admin+ SQL InjectionEPSS 14.1%CVE-2023-0603HIGHSloth Logo Customizer <= 2.0.2 - Stored XSS via CSRFEPSS 13.9%CVE-2022-1391—Cab fare calculator < 1.0.4 - Unauthenticated LFIEPSS 13.8%CVE-2022-0595—Drag and Drop Multiple File Upload - Contact Form 7 < 1.3.6.3 - Unauthenticated Stored XSSEPSS 13.6%CVE-2022-0867—ARPrice Lite < 3.6.1 - Unauthenticated SQLiEPSS 13.5%CVE-2022-0786—KiviCare < 2.3.9 - Unauthenticated SQLiEPSS 13.4%CVE-2021-24827—Asgaros Forum < 1.15.13 - Unauthenticated SQL InjectionEPSS 13.3%CVE-2022-2551—Duplicator < 1.4.7 - Unauthenticated Backup DownloadEPSS 13.2%CVE-2022-0952—Sitemap by click5 < 1.0.36 - Unauthenticated Arbitrary Options UpdateEPSS 13.2%CVE-2022-0781—Nirweb support < 2.8.2 - Unauthenticated SQLiEPSS 13.1%CVE-2022-2314—VR Calendar < 2.3.2 - Unauthenticated Arbitrary Function CallEPSS 12.9%CVE-2021-24915—Contest Gallery < 13.1.0.6 - Missing Access Controls to Unauthenticated SQL injection / Email Address DisclosureEPSS 12.7%CVE-2022-1574—HTML2WP <= 1.0.0 - Unauthenticated Arbitrary File UploadEPSS 11.8%CVE-2022-0817—BadgeOS <= 3.7.0 - Unauthenticated SQLiEPSS 11.6%CVE-2022-1392—Videos sync PDF <= 1.7.4 - Unauthenticated LFIEPSS 11.3%CVE-2021-24488—Post Grid < 2.1.8 - Reflected Cross-Site Scripting (XSS)EPSS 11.2%