igexsolutions records
9 published records for vendor igexsolutions.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')5
- CWE-639 Authorization Bypass Through User-Controlled Key2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-862 Missing Authorization1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2021-24575No exploit | WPSchoolPress < 2.1.10 - Multiple Authenticated SQL Injectionsigexsolutions · wpschoolpress · CWE-89 | High8.8 | — | 1.4% | Nov 8, 2021 |
35Monitor | CVE-2023-4776No exploit | WPSchoolPress < 2.2.5 - Teacher+ SQLiigexsolutions · wpschoolpress · CWE-89 | High8.8 | — | 0.7% | Oct 16, 2023 |
35Monitor | CVE-2024-9637No exploit | School Management System – WPSchoolPress <= 2.2.10 - Insecure Direct Object Reference to Authenticated (Teacher+) Account Takeover/Privilege Escalationigexsolutions · wpschoolpress · CWE-639 | High8.8 | — | 0.5% | Oct 26, 2024 |
26Monitor | CVE-2024-12332No exploit | School Management System – WPSchoolPress <= 2.2.14 - Authenticated (Student/Parent+) SQL Injectionigexsolutions · wpschoolpress · CWE-89 | Medium6.5 | — | 0.4% | Jan 7, 2025 |
26Monitor | CVE-2025-1669No exploit | School Management System – WPSchoolPress <= 2.2.17 - Authenticated (Teacher+) SQL Injectionigexsolutions · wpschoolpress · CWE-89 | Medium6.5 | — | 0.4% | Mar 15, 2025 |
26Monitor | CVE-2025-1670No exploit | School Management System – WPSchoolPress <= 2.2.16 - Authenticated (Parent+) SQL Injectionigexsolutions · wpschoolpress · CWE-89 | Medium6.5 | — | 0.4% | Mar 15, 2025 |
21Monitor | CVE-2025-1668No exploit | School Management System – WPSchoolPress <= 2.2.16 - Missing Authorization to Arbitrary User Deletionigexsolutions · wpschoolpress · CWE-862 | Medium5.4 | — | 0.3% | Mar 15, 2025 |
20Monitor | CVE-2021-24664Proof of concept | WPSchoolPress < 2.1.17 - Multiple Admin+ Stored Cross-Site Scriptingigexsolutions · wpschoolpress · CWE-79 | Medium4.8 | — | 2.4% | Nov 8, 2021 |
17Monitor | CVE-2025-1667No exploit | School Management System – WPSchoolPress <= 2.2.16 - Missing Authorization to Privilege Escalation via Account Takeoverigexsolutions · wpschoolpress · CWE-639 | Medium4.3 | — | 0.4% | Mar 15, 2025 |
- CVE-2021-2457535Monitor
WPSchoolPress < 2.1.10 - Multiple Authenticated SQL Injections
HighCVSS 8.8No exploitEPSS 1%igexsolutions · wpschoolpressNov 8, 2021
- CVE-2023-477635Monitor
WPSchoolPress < 2.2.5 - Teacher+ SQLi
HighCVSS 8.8No exploitEPSS 1%igexsolutions · wpschoolpressOct 16, 2023
- CVE-2024-963735Monitor
School Management System – WPSchoolPress <= 2.2.10 - Insecure Direct Object Reference to Authenticated (Teacher+) Account Takeover/Privilege Escalation
HighCVSS 8.8No exploitEPSS 0%igexsolutions · wpschoolpressOct 26, 2024
- CVE-2024-1233226Monitor
School Management System – WPSchoolPress <= 2.2.14 - Authenticated (Student/Parent+) SQL Injection
MediumCVSS 6.5No exploitEPSS 0%igexsolutions · wpschoolpressJan 7, 2025
- CVE-2025-166926Monitor
School Management System – WPSchoolPress <= 2.2.17 - Authenticated (Teacher+) SQL Injection
MediumCVSS 6.5No exploitEPSS 0%igexsolutions · wpschoolpressMar 15, 2025
- CVE-2025-167026Monitor
School Management System – WPSchoolPress <= 2.2.16 - Authenticated (Parent+) SQL Injection
MediumCVSS 6.5No exploitEPSS 0%igexsolutions · wpschoolpressMar 15, 2025
- CVE-2025-166821Monitor
School Management System – WPSchoolPress <= 2.2.16 - Missing Authorization to Arbitrary User Deletion
MediumCVSS 5.4No exploitEPSS 0%igexsolutions · wpschoolpressMar 15, 2025
- CVE-2021-2466420Monitor
WPSchoolPress < 2.1.17 - Multiple Admin+ Stored Cross-Site Scripting
MediumCVSS 4.8Proof of conceptEPSS 2%igexsolutions · wpschoolpressNov 8, 2021
- CVE-2025-166717Monitor
School Management System – WPSchoolPress <= 2.2.16 - Missing Authorization to Privilege Escalation via Account Takeover
MediumCVSS 4.3No exploitEPSS 0%igexsolutions · wpschoolpressMar 15, 2025