Vulnerabilidades em weblizar
10 resultadosAnálise Vexday
A Weblizar apresenta um perfil de risco baixo com apenas 3 vulnerabilidades catalogadas, nenhuma delas em exploração ativa conhecida ou com severidade crítica. A fraqueza dominante identificada (CWE-502 - Desserialização de dados não confiáveis) representa um risco potencial, mas a ausência de atividade de ataque recente e publicações recentes sugere que o cenário não demanda ação imediata.
CVE-2024-33911HIGHWordPress The School Management Pro plugin <= 10.3.4 - SQL Injection vulnerabilityEPSS 1.1%CVE-2017-20056LOWweblizar User Login Log Plugin Stored cross site scritingEPSS 0.8%CVE-2021-34628HIGHAdmin Custom Login <= 3.2.7 - Cross-Site Request Forgery to Stored Cross-Site ScriptingEPSS 0.7%CVE-2022-47430MEDIUMWordPress The School Management – Education & Learning Management Plugin <= 4.1 is vulnerable to SQL InjectionEPSS 0.7%CVE-2022-46849HIGHWordPress Coming Soon Plugin <= 1.5.9 is vulnerable to SQL InjectionEPSS 0.7%CVE-2024-1858MEDIUMLightbox slider – Responsive Lightbox Gallery <= 1.9.9 - Authenticated (Contributor+) PHP Object InjectionEPSS 0.5%CVE-2024-38756MEDIUMWordPress Coming Soon Page – Responsive Coming Soon & Maintenance Mode plugin <= 1.6.3 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2026-9767MEDIUMThe School Management <= 5.4 - Authenticated (Custom+) SQL Injection via 'order[0][dir]' ParameterEPSS 0.3%CVE-2026-2714MEDIUMInstitute Management <= 5.5 - Authenticated (Administrator+) Stored Cross-Site Scripting via 'Enquiry Form Title' SettingEPSS 0.3%CVE-2026-2487MEDIUMAdmin Custom Login <= 3.6.4 - Authenticated (Administrator+) Stored Cross-Site Scripting via 'Message Above Login Form' SettingEPSS 0.2%