Vulnerabilidades em unknown
4.767 resultadosAnálise Vexday
O fornecedor acumula 13 vulnerabilidades na base, das quais 2 são críticas (CVSS ≥ 9.0), mas nenhuma está sob ataque ativo no momento. A fraqueza dominante é CWE-121 (stack-based buffer overflow), um vetor clássico de exploração com potencial elevado. A ausência de publicações recentes nos últimos 90 dias sugere risco estabilizado, porém a presença de críticas demanda atenção continuada ao aplicar patches.
CVE-2021-24866—WP Data Access < 5.0.0 - Admin+ SQL InjectionEPSS 1.6%CVE-2021-24951—LearnPress < 4.1.4 - Admin+ SQL InjectionEPSS 1.6%CVE-2021-24863—StopBadBots < 6.67 - Unauthenticated SQL InjectionEPSS 1.6%CVE-2022-0148—All-in-one Floating Contact Form < 2.0.4 - Authenticated Reflected Cross-Site Scripting (XSS)EPSS 1.6%CVE-2021-24549—AceIDE <= 2.6.2 - Authenticated (admin+) Arbitrary File AccessEPSS 1.6%CVE-2021-24391—Cashtomer <= 1.0.0 - Authenticated SQL InjectionEPSS 1.6%CVE-2021-24337—Video Embed <= 1.0 - Authenticated (subscriber+) SQL InjectionEPSS 1.6%CVE-2021-24520—Stock in & out <= 1.0.4 - Authenticated SQL InjectionEPSS 1.6%CVE-2021-24726—WP Simple Booking Calendar <= 2.0.6 (before 07/12/2021) - Authenticated SQL InjectionEPSS 1.6%CVE-2022-1933—CDI < 5.1.9 - Reflected Cross-Site-ScriptingEPSS 1.6%CVE-2021-24348—Side Menu < 3.1.5 - Authenticated (admin+) SQL InjectionEPSS 1.6%CVE-2021-25030—Events Made Easy < 2.2.36 - Subscriber+ SQL InjectionEPSS 1.6%CVE-2022-0147—Cookie Information < 2.0.8 - Reflected Cross-Site ScriptingEPSS 1.6%CVE-2025-14124HIGHTeam < 5.0.11 - Unauthenticated SQLiEPSS 1.6%CVE-2021-24875—eCommerce Product Catalog for WordPress < 3.0.39 - Reflected Cross-Site ScriptingEPSS 1.6%CVE-2021-24893—Stars Rating < 3.5.1 - Comments Denial of ServiceEPSS 1.6%CVE-2021-24522—ProfilePress < 3.1.11 - Unauthenticated Cross-Site Scripting (XSS) in tabbed login/register widgetEPSS 1.6%CVE-2024-7313MEDIUMShield Security < 20.0.6 - Reflected XSSEPSS 1.6%CVE-2021-24393—Comment Highlighter <= 0.13 - Authenticated SQL InjectionEPSS 1.5%CVE-2021-24336—FlightLog <= 3.0.2 - Authenticated (editor+) SQL InjectionEPSS 1.5%