İçeriğe atla
Noroxi

iThemes kayıtları

ithemes üreticisine ait 25 yayımlanmış kayıt.

Tüm kayıtlar

25 kayıt
  • CVE-2020-14092
    67Bu hafta

    The CodePeople Payment Form for PayPal Pro plugin before 1.1.65 for WordPress allows SQL Injection.

    KritikCVSS 9,8Kavram kanıtıEPSS %95

    ithemes · paypal pro2 Tem 2020

  • CVE-2022-31474
    49Planlayın

    WordPress BackupBuddy Plugin 8.5.8.0-8.7.4.1 is vulnerable to Directory Traversal

    YüksekCVSS 7,5Kavram kanıtıEPSS %64

    ithemes · backupbuddy13 Mar 2023

  • CVE-2018-12636
    37İzleyin

    The iThemes Security (better-wp-security) plugin before 7.0.3 for WordPress allows SQL Injection (by attackers with Admin privileges) via th

    YüksekCVSS 7,2Kavram kanıtıEPSS %30

    ithemes · security22 Haz 2018

  • CVE-2013-2743
    31İzleyin

    importbuddy.php in the BackupBuddy plugin 1.3.4, 2.1.4, 2.2.25, 2.2.28, and 2.2.4 for WordPress allows remote attackers to bypass authentica

    YüksekCVSS 7,5İstismar yokEPSS %3

    wordpress · wordpress2 Nis 2013

  • CVE-2013-2741
    31İzleyin

    importbuddy.php in the BackupBuddy plugin 1.3.4, 2.1.4, 2.2.25, 2.2.28, and 2.2.4 for WordPress does not require that authentication be enab

    YüksekCVSS 7,5İstismar yokEPSS %3

    wordpress · wordpress2 Nis 2013

  • CVE-2013-2742
    31İzleyin

    importbuddy.php in the BackupBuddy plugin 1.3.4, 2.1.4, 2.2.25, 2.2.28, and 2.2.4 for WordPress does not reliably delete itself after comple

    YüksekCVSS 7,5İstismar yokEPSS %2

    wordpress · wordpress2 Nis 2013

  • CVE-2018-7433
    30İzleyin

    The iThemes Security plugin before 6.9.1 for WordPress does not properly perform data escaping for the logs page.

    YüksekCVSS 7,5İstismar yokEPSS %1

    ithemes · security2 Mar 2018

  • CVE-2020-36176
    30İzleyin

    The iThemes Security (formerly Better WP Security) plugin before 7.7.0 for WordPress does not enforce a new-password requirement for an exis

    YüksekCVSS 7,5İstismar yokEPSS %1

    ithemes · ithemes security6 Oca 2021

  • CVE-2015-9371
    24İzleyin

    Manual Purchases Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · manual purchases28 Ağu 2019

  • CVE-2015-9374
    24İzleyin

    Stripe Add-on for iThemes Exchange before 1.2.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · stripe28 Ağu 2019

  • CVE-2015-9375
    24İzleyin

    Table Rate Shipping Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · table rate shipping28 Ağu 2019

  • CVE-2015-9376
    24İzleyin

    iThemes Mobile before 1.2.8 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · mobile28 Ağu 2019

  • CVE-2015-9377
    24İzleyin

    iThemes Builder Theme Depot before 5.0.30 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · builder theme depot28 Ağu 2019

  • CVE-2015-9378
    24İzleyin

    iThemes Builder Theme Market before 5.1.27 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · builder theme market28 Ağu 2019

  • CVE-2015-9379
    24İzleyin

    iThemes Builder Style Manager before 0.7.7 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · builder style manager28 Ağu 2019

  • CVE-2015-9372
    24İzleyin

    Membership Add-on for iThemes Exchange before 1.3.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · membership28 Ağu 2019

  • CVE-2015-9363
    24İzleyin

    iThemes Exchange before 1.12.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · exchange28 Ağu 2019

  • CVE-2015-9365
    24İzleyin

    Authorize.net Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · authorize.net28 Ağu 2019

  • CVE-2015-9366
    24İzleyin

    Custom URL Tracking Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · custom url tracking28 Ağu 2019

  • CVE-2015-9367
    24İzleyin

    Easy Canadian Sales Taxes Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · easy canadian sales taxes28 Ağu 2019

  • CVE-2015-9368
    24İzleyin

    Easy EU Value Added (VAT) Taxes Add-on for iThemes Exchange before 1.2.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · easy eu value added \(vat\) taxes28 Ağu 2019

  • CVE-2015-9369
    24İzleyin

    Easy US Sales Taxes Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · easy us sales taxes28 Ağu 2019

  • CVE-2015-9370
    24İzleyin

    Invoices Add-on for iThemes Exchange before 1.4.0 for WordPress has XSS via add_query_arg() and remove_query_arg().

    OrtaCVSS 6,1İstismar yokEPSS %1

    ithemes · invoices28 Ağu 2019

  • CVE-2022-4897
    24İzleyin

    BackupBuddy < 8.8.3 - Multiple Reflected Cross-Site Scripting

    OrtaCVSS 6,1Kavram kanıtıEPSS %1

    ithemes · backupbuddy21 Şub 2023

  • CVE-2013-2744
    21İzleyin

    importbuddy.php in the BackupBuddy plugin 2.2.25 for WordPress allows remote attackers to obtain configuration information via a step 0 phpi

    OrtaCVSS 5,0İstismar yokEPSS %2

    wordpress · wordpress2 Nis 2013