Записи CODEPRESS
7 опубликованных записей вендора codepress.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 14,3 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')4
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-862 Missing Authorization1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
46В плане | CVE-2021-24750Proof of concept | WP Visitor Statistics (Real Time Traffic) < 4.8 - Subscriber+ SQL Injectioncodepress · visitor statistics · CWE-89 | Высокая8,8 | — | 38,3 % | 21 дек. 2021 г. |
40В плане | CVE-2022-33965Proof of concept | WordPress WP Visitor Statistics plugin <= 5.7 - Multiple Unauthenticated SQL Injection (SQLi) vulnerabilitiescodepress · visitor statistics · CWE-89 | Критическая9,8 | — | 4,4 % | 25 июл. 2022 г. |
40В плане | CVE-2023-0600Proof of concept | WP Visitor Statistics (Real Time Traffic) < 6.9 - Unauthenticated SQLicodepress · visitor statistics · CWE-89 | Критическая9,8 | — | 4,2 % | 15 мая 2023 г. |
35Наблюдать | CVE-2022-0410Эксплойта нет | WP Visitor Statistics (Real Time Traffic) < 5.6 - Subscriber+ SQL Injectioncodepress · visitor statistics · CWE-89 | Высокая8,8 | — | 1,3 % | 7 мар. 2022 г. |
30Наблюдать | CVE-2024-24867Эксплойта нет | WordPress WP Stats Manager plugin <= 6.9.4 - Sensitive Data Exposure vulnerabilitycodepress · visitor statistics · CWE-200 | Высокая7,5 | — | 0,5 % | 17 мар. 2024 г. |
21Наблюдать | CVE-2021-25042Эксплойта нет | WP Visitor Statistics (Real Time Traffic) < 5.5 - Arbitrary IP Address Exclusion to Stored XSScodepress · visitor statistics · CWE-862 | Средняя5,4 | — | 0,5 % | 28 февр. 2022 г. |
21Наблюдать | CVE-2022-4656Эксплойта нет | WP Visitor Statistics (Real Time Traffic) < 6.5 - Contributor+ Stored XSS via Shortcodecodepress · visitor statistics · CWE-79 | Средняя5,4 | — | 0,5 % | 13 февр. 2023 г. |
- CVE-2021-2475046В плане
WP Visitor Statistics (Real Time Traffic) < 4.8 - Subscriber+ SQL Injection
ВысокаяCVSS 8,8Proof of conceptEPSS 38 %codepress · visitor statistics21 дек. 2021 г.
- CVE-2022-3396540В плане
WordPress WP Visitor Statistics plugin <= 5.7 - Multiple Unauthenticated SQL Injection (SQLi) vulnerabilities
КритическаяCVSS 9,8Proof of conceptEPSS 4 %codepress · visitor statistics25 июл. 2022 г.
- CVE-2023-060040В плане
WP Visitor Statistics (Real Time Traffic) < 6.9 - Unauthenticated SQLi
КритическаяCVSS 9,8Proof of conceptEPSS 4 %codepress · visitor statistics15 мая 2023 г.
- CVE-2022-041035Наблюдать
WP Visitor Statistics (Real Time Traffic) < 5.6 - Subscriber+ SQL Injection
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %codepress · visitor statistics7 мар. 2022 г.
- CVE-2024-2486730Наблюдать
WordPress WP Stats Manager plugin <= 6.9.4 - Sensitive Data Exposure vulnerability
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %codepress · visitor statistics17 мар. 2024 г.
- CVE-2021-2504221Наблюдать
WP Visitor Statistics (Real Time Traffic) < 5.5 - Arbitrary IP Address Exclusion to Stored XSS
СредняяCVSS 5,4Эксплойта нетEPSS 1 %codepress · visitor statistics28 февр. 2022 г.
- CVE-2022-465621Наблюдать
WP Visitor Statistics (Real Time Traffic) < 6.5 - Contributor+ Stored XSS via Shortcode
СредняяCVSS 5,4Эксплойта нетEPSS 0 %codepress · visitor statistics13 февр. 2023 г.