Vulnerabilidades em unknown

4.767 resultados
Análise Vexday

O fornecedor acumula 13 vulnerabilidades na base, das quais 2 são críticas (CVSS ≥ 9.0), mas nenhuma está sob ataque ativo no momento. A fraqueza dominante é CWE-121 (stack-based buffer overflow), um vetor clássico de exploração com potencial elevado. A ausência de publicações recentes nos últimos 90 dias sugere risco estabilizado, porém a presença de críticas demanda atenção continuada ao aplicar patches.

CVE-2023-1381HIGHWP Meta SEO < 4.5.5 - Author+ PHAR DeserializationEPSS 1.7%CVE-2022-1937Awin Data Feed < 1.8 - Reflected Cross-Site ScriptingEPSS 1.7%CVE-2023-1273ND Shortcodes < 7.0 - Subscriber+ LFIEPSS 1.7%CVE-2021-24252Event Banner <= 1.3 - Arbitrary File Upload to RCEEPSS 1.7%CVE-2022-0541Flo Launch < 2.4.1 - Missing Authentication Allow Full Site TakeoverEPSS 1.7%CVE-2018-3890HIGHAn exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D. A specially craftedEPSS 1.7%CVE-2021-24956Blog2Social < 6.8.7 - Reflected Cross-Site ScriptingEPSS 1.7%CVE-2022-1008One Click Demo Import < 3.1.0 - Admin+ Arbitrary File UploadEPSS 1.7%CVE-2021-25085WOOF - Products Filter for WooCommerce < 1.2.6.3 - Reflected Cross-Site ScriptingEPSS 1.7%CVE-2023-0169MEDIUMZoho Forms < 3.0.1 - Contributor+ Stored XSSEPSS 1.6%CVE-2021-24123PowerPress < 8.3.8 - Authenticated Arbitrary File Upload leading to RCEEPSS 1.6%CVE-2018-17912An XXE vulnerability exists in CASE Suite Versions 3.10 and prior when processing parameter entities, which may allow remote file disclosureEPSS 1.6%CVE-2023-0477Auto Featured Image < 3.9.16 - Author+ Arbitrary File UploadEPSS 1.6%CVE-2022-1165Blackhole for Bad Bots < 3.3.2 - Arbitrary IP Address Blocking via IP SpoofingEPSS 1.6%CVE-2021-24165Ninja Forms < 3.4.34 - Administrator Open RedirectEPSS 1.6%CVE-2021-24651Poll Maker < 3.4.2 - Unauthenticated Time Based SQL InjectionEPSS 1.6%CVE-2024-7786HIGHSensei LMS < 4.24.2 - Unauthenticated Email Template LeakEPSS 1.6%CVE-2022-1946Gallery < 2.0.0 - Reflected Cross-Site ScriptingEPSS 1.6%CVE-2021-24695Simple Download Monitor < 3.9.6 - Unauthenticated Log AccessEPSS 1.6%CVE-2021-24562LifterLMS < 4.21.2 - Access Other Student Grades/Answers via IDOREPSS 1.6%