Vulnerabilidades en unknown

4715 resultados
Análisis Vexday

O fornecedor acumula 13 vulnerabilidades na base, das quais 2 são críticas (CVSS ≥ 9.0), mas nenhuma está sob ataque ativo no momento. A fraqueza dominante é CWE-121 (stack-based buffer overflow), um vetor clássico de exploração com potencial elevado. A ausência de publicações recentes nos últimos 90 dias sugere risco estabilizado, porém a presença de críticas demanda atenção continuada ao aplicar patches.

CVE-2021-24943Registrations for the Events Calendar < 2.7.6 - Unauthenticated SQL InjectionEPSS 7.5%CVE-2022-0864UpdraftPlus < 1.22.9 - Reflected Cross-Site ScriptingEPSS 7.4%CVE-2022-0693Master Elements <= 8.0 - Unauthenticated SQLiEPSS 7.1%CVE-2023-2636AN_GradeBook <= 5.0.1 - Subscriber+ SQLiEPSS 6.9%CVE-2023-4827HIGHFile Manager Pro < 1.8 - Remote Code Execution via CSRFEPSS 6.8%CVE-2021-25079Contact Form Entries < 1.2.4 - Reflected Cross-Site ScriptingEPSS 6.8%CVE-2021-4436CRITICAL3DPrint Lite < 1.9.1.5 - Unauthenticated Arbitrary File UploadEPSS 6.6%CVE-2021-24731Pie Register < 3.7.1.6 - Unauthenticated SQL InjectionEPSS 6.6%CVE-2021-25032PublishPress Capabilities < 2.3.1 - Unauthenticated Arbitrary Options Update to Blog CompromiseEPSS 6.6%CVE-2021-24627G Auto-Hyperlink <= 1.0.1 - Admin+ SQL InjectionEPSS 6.6%CVE-2021-24554Paytm - Donation Plugin <= 1.3.2 - Authenticated (admin+) SQL InjectionEPSS 6.5%CVE-2022-3124Frontend File Manager < 21.3 - Unauthenticated File RenamingEPSS 6.5%CVE-2022-4047CRITICALReturn Refund and Exchange For WooCommerce < 4.0.9 - Unauthenticated Arbitrary File UploadEPSS 6.2%CVE-2023-2779MEDIUMSuper Socializer < 7.13.52 - Reflected XSSEPSS 6.0%CVE-2024-4474MEDIUMWP Logs Book <= 1.0.1 - Disable Logging via CSRFEPSS 6.0%CVE-2021-24227Patreon WordPress < 1.7.0 - Unauthenticated Local File DisclosureEPSS 5.9%CVE-2021-24970All-In-One-Gallery < 2.5.0 - Admin+ Local File InclusionEPSS 5.9%CVE-2022-0228Popup Builder < 4.0.7 - Admin+ SQL InjectionEPSS 5.9%CVE-2022-0448CP Blocks < 1.0.15 - Admin+ Stored Cross-Site ScriptingEPSS 5.7%CVE-2021-25118Yoast SEO 16.7-17.2 - Unauthenticated Full Path DisclosureEPSS 5.6%