e4jconnect records
6 published records for vendor e4jconnect.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 66.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-352 Cross-Site Request Forgery (CSRF)3
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2024-39653No exploit | WordPress VikRentCar Car Rental Management System plugin <= 1.4.0 - SQL Injection vulnerabilitye4jconnect · vikrentcar · CWE-89 | Critical9.8 | — | 0.5% | Aug 29, 2024 |
35Monitor | CVE-2024-11640No exploit | VikRentCar Car Rental Management System <= 1.4.2 - Cross-Site Request Forgery to Authenticated (Subscriber+) Arbitrary File Uploade4jconnect · vikrentcar · CWE-352 | High8.8 | — | 0.3% | Mar 8, 2025 |
35Monitor | CVE-2024-1845No exploit | VikRentCar Car Rental Management System < 1.3.2 - Cross Site Request Forgerye4jconnect · vikrentcar · CWE-352 | High8.8 | — | 0.3% | Jul 11, 2024 |
35Monitor | CVE-2025-46251No exploit | WordPress VikRestaurants Table Reservations and Take-Away plugin <= 1.3.3 - CSRF to Stored XSS vulnerabilitye4jconnect · vikrestaurants table reservations and take-away · CWE-352 | High8.8 | — | 0.2% | Apr 22, 2025 |
28Monitor | CVE-2025-5322No exploit | VikRentCar Car Rental Management System <= 1.4.3 - Authenticated (Administrator+) Arbitrary File Uploade4jconnect · vikrentcar · CWE-434 | High7.2 | — | 0.7% | Jul 3, 2025 |
19Monitor | CVE-2023-23998No exploit | WordPress VikRentCar Plugin <= 1.3.0 is vulnerable to Cross Site Scripting (XSS)e4jconnect · vikrentcar · CWE-79 | Medium4.8 | — | 0.4% | Apr 6, 2023 |
- CVE-2024-3965339Monitor
WordPress VikRentCar Car Rental Management System plugin <= 1.4.0 - SQL Injection vulnerability
CriticalCVSS 9.8No exploitEPSS 0%e4jconnect · vikrentcarAug 29, 2024
- CVE-2024-1164035Monitor
VikRentCar Car Rental Management System <= 1.4.2 - Cross-Site Request Forgery to Authenticated (Subscriber+) Arbitrary File Upload
HighCVSS 8.8No exploitEPSS 0%e4jconnect · vikrentcarMar 8, 2025
- CVE-2024-184535Monitor
VikRentCar Car Rental Management System < 1.3.2 - Cross Site Request Forgery
HighCVSS 8.8No exploitEPSS 0%e4jconnect · vikrentcarJul 11, 2024
- CVE-2025-4625135Monitor
WordPress VikRestaurants Table Reservations and Take-Away plugin <= 1.3.3 - CSRF to Stored XSS vulnerability
HighCVSS 8.8No exploitEPSS 0%e4jconnect · vikrestaurants table reservations and take-awayApr 22, 2025
- CVE-2025-532228Monitor
VikRentCar Car Rental Management System <= 1.4.3 - Authenticated (Administrator+) Arbitrary File Upload
HighCVSS 7.2No exploitEPSS 1%e4jconnect · vikrentcarJul 3, 2025
- CVE-2023-2399819Monitor
WordPress VikRentCar Plugin <= 1.3.0 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 4.8No exploitEPSS 0%e4jconnect · vikrentcarApr 6, 2023