Записи roundupwp
6 опубликованных записей вендора roundupwp.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 50 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2021-24943Proof of concept | Registrations for the Events Calendar < 2.7.6 - Unauthenticated SQL Injectionroundupwp · registrations for the events calendar · CWE-89 | Критическая9,8 | — | 7,3 % | 6 дек. 2021 г. |
38Наблюдать | CVE-2024-7982Эксплойта нет | Registrations for The Events Calendar < 2.12.4 - Unauthenticated Stored XSSroundupwp · registrations for the events calendar · CWE-79 | Критическая9,6 | — | 0,7 % | 8 нояб. 2024 г. |
35Наблюдать | CVE-2024-39638Эксплойта нет | WordPress Registrations for the Events Calendar plugin <= 2.12.2 - SQL Injection vulnerabilityroundupwp · registrations for the events calendar · CWE-89 | Высокая8,8 | — | 0,4 % | 29 авг. 2024 г. |
24Наблюдать | CVE-2021-24876Proof of concept | Registrations for The Events Calendar < 2.7.5 - Reflected Cross-Site Scriptingroundupwp · registrations for the events calendar · CWE-79 | Средняя6,1 | — | 1,2 % | 29 нояб. 2021 г. |
24Наблюдать | CVE-2021-25083Эксплойта нет | Registrations for the Events Calendar < 2.7.10 - Reflected Cross-Site Scriptingroundupwp · registrations for the events calendar · CWE-79 | Средняя6,1 | — | 0,9 % | 24 янв. 2022 г. |
24Наблюдать | CVE-2024-10703Эксплойта нет | Registrations for The Events Calendar < 2.13.4 - Admin+ Stored XSSroundupwp · registrations for the events calendar · CWE-79 | Средняя6,1 | — | 0,3 % | 25 мар. 2025 г. |
- CVE-2021-2494341В плане
Registrations for the Events Calendar < 2.7.6 - Unauthenticated SQL Injection
КритическаяCVSS 9,8Proof of conceptEPSS 7 %roundupwp · registrations for the events calendar6 дек. 2021 г.
- CVE-2024-798238Наблюдать
Registrations for The Events Calendar < 2.12.4 - Unauthenticated Stored XSS
КритическаяCVSS 9,6Эксплойта нетEPSS 1 %roundupwp · registrations for the events calendar8 нояб. 2024 г.
- CVE-2024-3963835Наблюдать
WordPress Registrations for the Events Calendar plugin <= 2.12.2 - SQL Injection vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %roundupwp · registrations for the events calendar29 авг. 2024 г.
- CVE-2021-2487624Наблюдать
Registrations for The Events Calendar < 2.7.5 - Reflected Cross-Site Scripting
СредняяCVSS 6,1Proof of conceptEPSS 1 %roundupwp · registrations for the events calendar29 нояб. 2021 г.
- CVE-2021-2508324Наблюдать
Registrations for the Events Calendar < 2.7.10 - Reflected Cross-Site Scripting
СредняяCVSS 6,1Эксплойта нетEPSS 1 %roundupwp · registrations for the events calendar24 янв. 2022 г.
- CVE-2024-1070324Наблюдать
Registrations for The Events Calendar < 2.13.4 - Admin+ Stored XSS
СредняяCVSS 6,1Эксплойта нетEPSS 0 %roundupwp · registrations for the events calendar25 мар. 2025 г.