simple-press kayıtları
simple-press üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %16,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-434 Unrestricted Upload of File with Dangerous Type1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2020-36706İstismar yok | Simple:Press – WordPress Forum Plugin <= 6.6.0 - Arbitrary File Uploadsimple-press · simple\ · CWE-434 | Kritik9,8 | — | %1,8 | 20 Eki 2023 |
33İzleyin | CVE-2022-4030İstismar yok | Simple:Press <= 6.8 - Authenticated (Subscriber+) Path Traversal to Arbitrary File Deletionsimple-press · simple\ · CWE-22 | Yüksek8,1 | — | %1,7 | 29 Kas 2022 |
21İzleyin | CVE-2022-4027İstismar yok | Simple:Press <= 6.8 - Unauthenticated Stored Cross-Site Scripting via Forum Repliessimple-press · simple\ · CWE-79 | Orta5,4 | — | %0,6 | 29 Kas 2022 |
21İzleyin | CVE-2022-4028İstismar yok | Simple:Press <= 6.8 - Authenticated (Subscriber+) Stored Cross-Site Scripting via Profile Signaturessimple-press · simple\ · CWE-79 | Orta5,4 | — | %0,5 | 29 Kas 2022 |
19İzleyin | CVE-2022-4031İstismar yok | Simple:Press <= 6.8 - Authenticated (Admin+) Path Traversal to Arbitrary File Modificationsimple-press · simple\ · CWE-22 | Orta4,9 | — | %0,7 | 29 Kas 2022 |
18İzleyin | CVE-2022-4029İstismar yok | Simple:Press <= 6.8 - Reflected Cross-Site Scripting via Cookie Valuesimple-press · simple\ · CWE-79 | Orta4,7 | — | %0,6 | 29 Kas 2022 |
- CVE-2020-3670640Planlayın
Simple:Press – WordPress Forum Plugin <= 6.6.0 - Arbitrary File Upload
KritikCVSS 9,8İstismar yokEPSS %2simple-press · simple\20 Eki 2023
- CVE-2022-403033İzleyin
Simple:Press <= 6.8 - Authenticated (Subscriber+) Path Traversal to Arbitrary File Deletion
YüksekCVSS 8,1İstismar yokEPSS %2simple-press · simple\29 Kas 2022
- CVE-2022-402721İzleyin
Simple:Press <= 6.8 - Unauthenticated Stored Cross-Site Scripting via Forum Replies
OrtaCVSS 5,4İstismar yokEPSS %1simple-press · simple\29 Kas 2022
- CVE-2022-402821İzleyin
Simple:Press <= 6.8 - Authenticated (Subscriber+) Stored Cross-Site Scripting via Profile Signatures
OrtaCVSS 5,4İstismar yokEPSS %1simple-press · simple\29 Kas 2022
- CVE-2022-403119İzleyin
Simple:Press <= 6.8 - Authenticated (Admin+) Path Traversal to Arbitrary File Modification
OrtaCVSS 4,9İstismar yokEPSS %1simple-press · simple\29 Kas 2022
- CVE-2022-402918İzleyin
Simple:Press <= 6.8 - Reflected Cross-Site Scripting via Cookie Value
OrtaCVSS 4,7İstismar yokEPSS %1simple-press · simple\29 Kas 2022