Vulnerabilidades em unknown

4.767 resultados
Análise Vexday

O fornecedor acumula 13 vulnerabilidades na base, das quais 2 são críticas (CVSS ≥ 9.0), mas nenhuma está sob ataque ativo no momento. A fraqueza dominante é CWE-121 (stack-based buffer overflow), um vetor clássico de exploração com potencial elevado. A ausência de publicações recentes nos últimos 90 dias sugere risco estabilizado, porém a presença de críticas demanda atenção continuada ao aplicar patches.

CVE-2021-24866WP Data Access < 5.0.0 - Admin+ SQL InjectionEPSS 1.6%CVE-2021-24951LearnPress < 4.1.4 - Admin+ SQL InjectionEPSS 1.6%CVE-2021-24863StopBadBots < 6.67 - Unauthenticated SQL InjectionEPSS 1.6%CVE-2022-0148All-in-one Floating Contact Form < 2.0.4 - Authenticated Reflected Cross-Site Scripting (XSS)EPSS 1.6%CVE-2021-24549AceIDE <= 2.6.2 - Authenticated (admin+) Arbitrary File AccessEPSS 1.6%CVE-2021-24391Cashtomer <= 1.0.0 - Authenticated SQL InjectionEPSS 1.6%CVE-2021-24337Video Embed <= 1.0 - Authenticated (subscriber+) SQL InjectionEPSS 1.6%CVE-2021-24520Stock in & out <= 1.0.4 - Authenticated SQL InjectionEPSS 1.6%CVE-2021-24726WP Simple Booking Calendar <= 2.0.6 (before 07/12/2021) - Authenticated SQL InjectionEPSS 1.6%CVE-2022-1933CDI < 5.1.9 - Reflected Cross-Site-ScriptingEPSS 1.6%CVE-2021-24348Side Menu < 3.1.5 - Authenticated (admin+) SQL InjectionEPSS 1.6%CVE-2021-25030Events Made Easy < 2.2.36 - Subscriber+ SQL InjectionEPSS 1.6%CVE-2022-0147Cookie Information < 2.0.8 - Reflected Cross-Site ScriptingEPSS 1.6%CVE-2025-14124HIGHTeam < 5.0.11 - Unauthenticated SQLiEPSS 1.6%CVE-2021-24875eCommerce Product Catalog for WordPress < 3.0.39 - Reflected Cross-Site ScriptingEPSS 1.6%CVE-2021-24893Stars Rating < 3.5.1 - Comments Denial of ServiceEPSS 1.6%CVE-2021-24522ProfilePress < 3.1.11 - Unauthenticated Cross-Site Scripting (XSS) in tabbed login/register widgetEPSS 1.6%CVE-2024-7313MEDIUMShield Security < 20.0.6 - Reflected XSSEPSS 1.6%CVE-2021-24393Comment Highlighter <= 0.13 - Authenticated SQL InjectionEPSS 1.5%CVE-2021-24336FlightLog <= 3.0.2 - Authenticated (editor+) SQL InjectionEPSS 1.5%