Vulnerabilidades em unknown
4.767 resultadosAnálise Vexday
O fornecedor acumula 13 vulnerabilidades na base, das quais 2 são críticas (CVSS ≥ 9.0), mas nenhuma está sob ataque ativo no momento. A fraqueza dominante é CWE-121 (stack-based buffer overflow), um vetor clássico de exploração com potencial elevado. A ausência de publicações recentes nos últimos 90 dias sugere risco estabilizado, porém a presença de críticas demanda atenção continuada ao aplicar patches.
CVE-2023-5203HIGHWP Sessions Time Monitoring Full Automatic < 1.0.9 - Unauthenticated SQL injectionEPSS 2.2%CVE-2023-2606—WP Brutal AI < 2.06 - Admin+ Stored XSSEPSS 2.2%CVE-2021-25112—WHMCS Bridge < 6.4b - Reflected Cross-Site Scripting (XSS)EPSS 2.2%CVE-2022-1221—Gwyn's Imagemap Selector <= 0.3.3 - Reflected Cross-Site ScriptingEPSS 2.2%CVE-2023-3076—MStore API < 3.9.9 - Unauthenticated Privilege EscalationEPSS 2.2%CVE-2024-6486HIGHImageMagick Engine < 1.7.11 - Administrator+ OS Command InjectionEPSS 2.2%CVE-2021-25099—Give < 2.17.3 - Unauthenticated Reflected Cross-Site ScriptingEPSS 2.1%CVE-2024-6330CRITICALGEO my WordPress < 4.4.0.2 - Unauthenticated RCE via LFIEPSS 2.1%CVE-2023-2571MEDIUMQuiz Maker < 6.4.2.7 - Reflected XSSEPSS 2.1%CVE-2022-0316CRITICALMultiple themes - Unauthenticated Arbitrary File UploadEPSS 2.1%CVE-2021-24384—JoomSport < 5.1.8 - Unauthenticated PHP Object InjectionEPSS 2.1%CVE-2021-24176—JH 404 Logger <= 1.1 - Unauthenticated Stored Cross-Site Scripting (XSS)EPSS 2.0%CVE-2022-0208—MapPress Maps for WordPress < 2.73.4 - Reflected Cross-Site scriptingEPSS 2.0%CVE-2024-10708MEDIUMSystem Dashboard < 2.8.15 - Admin+ Path TraversalEPSS 2.0%CVE-2022-0254—Zero Spam < 5.2.11 - Admin+ SQL InjectionEPSS 2.0%CVE-2023-5762—Filr – Secure document library < 1.2.3.6 - Author+ RCE via file upload with phar extEPSS 2.0%CVE-2022-0594—Shareaholic < 9.7.6 - Information DisclosureEPSS 2.0%CVE-2023-6000MEDIUMPopup Builder < 4.2.3 - Unauthenticated Stored XSSEPSS 2.0%CVE-2022-0320—Essential Addons for Elementor < 5.0.5 - Unauthenticated LFIEPSS 2.0%CVE-2021-24493—Shopp eCommerce <= 1.4 - Unauthenticated Arbitrary File UploadEPSS 2.0%