Skip to content
Noroxi

ThimPress records

71 published records for vendor thimpress.

All records

71 records
  • WP Hotel Booking < 2.0.8 - Unauthenticated SQLi

    CriticalCVSS 9.8Proof of conceptEPSS 64%

    thimpress · wp hotel bookingNov 20, 2023

  • LearnPress Wordpress plugin version prior and including 3.2.6.7 is vulnerable to SQL Injection

    HighCVSS 8.8WeaponizedEPSS 49%

    thimpress · learnpressApr 30, 2020

  • LearnPress – WordPress LMS Plugin <= 4.2.6.5 - Unauthenticated Time-Based SQL Injection

    CriticalCVSS 9.8Proof of conceptEPSS 37%

    thimpress · learnpressMay 14, 2024

  • LearnPress – WordPress LMS Plugin <= 4.2.7 - Unauthenticated SQL Injection via 'c_only_fields'

    HighCVSS 7.5WeaponizedEPSS 63%

    thimpress · learnpressSep 12, 2024

  • LearnPress <= 4.2.5.7 - Unauthenticated SQL Injection via order_by

    HighCVSS 7.5Proof of conceptEPSS 51%

    thimpress · learnpressJan 11, 2024

  • The wp-hotel-booking plugin through 1.10.2 for WordPress allows remote attackers to execute arbitrary code because of an unserialize operati

    CriticalCVSS 9.8Proof of conceptEPSS 16%

    thimpress · wp hotel bookingMar 3, 2021

  • LearnPress <= 4.2.5.7 - Command Injection

    CriticalCVSS 9.8Proof of conceptEPSS 9%

    thimpress · learnpressJan 11, 2024

  • WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to Local File Inclusion

    CriticalCVSS 9.8Proof of conceptEPSS 5%

    thimpress · learnpressJan 26, 2023

  • WP Hotel Booking <= 2.1.2 - Authenticated (Subscriber+) Arbitrary File Upload

    HighCVSS 8.8No exploitEPSS 18%

    thimpress · wp hotel bookingOct 2, 2024

  • WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to SQL Injection

    CriticalCVSS 9.8Proof of conceptEPSS 4%

    thimpress · learnpressJan 26, 2023

  • WP Hotel Booking <= 2.1.0 - Unauthenticated SQL Injection

    CriticalCVSS 9.8Proof of conceptEPSS 4%

    thimpress · wp hotel bookingJun 19, 2024

  • LearnPress < 4.1.4 - Admin+ SQL Injection

    CriticalCVSS 9.8No exploitEPSS 2%

    thimpress · learnpressDec 13, 2021

  • WordPress WP Hotel Booking plugin <= 2.0.9.2 - Broken Access Control vulnerability

    CriticalCVSS 9.8No exploitEPSS 1%

    thimpress · wp hotel bookingMar 29, 2024

  • WordPress WP Pipes <= 1.4.3 - Local File Inclusion Vulnerability

    CriticalCVSS 9.8No exploitEPSS 0%

    thimpress · wp pipesAug 14, 2025

  • WordPress LearnPress plugin <= 4.2.3 - Unauthenticated Broken Access Control vulnerability

    CriticalCVSS 9.8No exploitEPSS 0%

    thimpress · learnpressJun 19, 2024

  • WordPress WP Pipes plugin <= 1.4.3 - SQL Injection Vulnerability

    CriticalCVSS 9.8No exploitEPSS 0%

    thimpress · wp pipesJul 16, 2025

  • WordPress WP Pipes plugin <= 1.4.2 - Arbitrary File Deletion Vulnerability

    CriticalCVSS 9.1No exploitEPSS 0%

    thimpress · wp pipesJun 9, 2025

  • CVE-2024-4397
    35Monitor

    LearnPress – WordPress LMS Plugin <= 4.2.6.5 - Authenticated (Instructor+) Arbitrary File Upload

    HighCVSS 8.8No exploitEPSS 1%

    thimpress · learnpressMay 14, 2024

  • WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to SQL Injection

    HighCVSS 8.8No exploitEPSS 1%

    thimpress · learnpressJan 26, 2023

  • CVE-2024-6589
    35Monitor

    LearnPress <= 4.2.6.8.2 - Authenticated (Contributor+) Local File Inclusion

    HighCVSS 8.8No exploitEPSS 1%

    thimpress · learnpressJul 25, 2024

  • WordPress WP Hotel Booking plugin <= 2.2.9 - Local File Inclusion vulnerability

    HighCVSS 8.8No exploitEPSS 1%

    thimpress · wp hotel bookingNov 4, 2024

  • WordPress LearnPress plugin <= 4.2.3 - Authenticated Broken Access Control vulnerability

    HighCVSS 8.8No exploitEPSS 1%

    thimpress · learnpressJun 19, 2024

  • CVE-2024-7717
    35Monitor

    WP Events Manager <= 2.1.11 - Authenticated (Subscriber+) Time-Based SQL Injection

    HighCVSS 8.8No exploitEPSS 0%

    thimpress · wp events managerAug 31, 2024

  • CVE-2024-2115
    35Monitor

    LearnPress – WordPress LMS Plugin <= 4.0.0 - Cross-Site Request Forgery to Privilege Escalation

    HighCVSS 8.8No exploitEPSS 0%

    thimpress · learnpressApr 5, 2024

  • WordPress LearnPress plugin <= 4.2.6.8.2 - Cross Site Request Forgery (CSRF) vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    thimpress · learnpressAug 26, 2024