İçeriğe atla
Noroxi

webfactoryltd kayıtları

webfactoryltd üreticisine ait 27 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%11,1
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

27 kayıt
  • CVE-2020-7048
    43Planlayın

    The WordPress plugin, WP Database Reset through 3.1, contains a flaw that allowed any unauthenticated user to reset any table in the databas

    KritikCVSS 9,1Kavram kanıtıEPSS %23

    webfactoryltd · wp database reset16 Oca 2020

  • CVE-2020-7047
    36İzleyin

    The WordPress plugin, WP Database Reset through 3.1, contains a flaw that gave any authenticated user, with minimal permissions, the ability

    YüksekCVSS 8,8İstismar yokEPSS %2

    webfactoryltd · wp database reset16 Oca 2020

  • CVE-2019-19915
    36İzleyin

    The "301 Redirects - Easy Redirect Manager" plugin before 2.45 for WordPress allows users (with subscriber or greater access) to modify, del

    KritikCVSS 9,0İstismar yokEPSS %1

    webfactoryltd · 301 redirects19 Ara 2019

  • CVE-2020-6167
    35İzleyin

    A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.10, allows a CSRF attack to enable maintenance mode, inject

    YüksekCVSS 8,8İstismar yokEPSS %1

    webfactoryltd · minimal coming soon \& maintenance mode9 Oca 2020

  • CVE-2021-36908
    35İzleyin

    WordPress WP Reset PRO Premium Plugin <= 5.98 - Cross-Site Request Forgery (CSRF) vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %1

    webfactoryltd · wp reset pro18 Kas 2021

  • CVE-2021-36909
    33İzleyin

    WordPress WP Reset PRO Premium plugin <= 5.98 - Authenticated Database Reset vulnerability

    YüksekCVSS 8,1İstismar yokEPSS %2

    webfactoryltd · wp reset pro18 Kas 2021

  • CVE-2020-6168
    31İzleyin

    A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.10, allows authenticated users with basic access to enable

    YüksekCVSS 7,6İstismar yokEPSS %2

    webfactoryltd · minimal coming soon \& maintenance mode9 Oca 2020

  • CVE-2021-24142
    28İzleyin

    301 Redirects - Easy Redirect Manager < 2.51 - Authenticated SQL Injection

    YüksekCVSS 7,2İstismar yokEPSS %1

    webfactoryltd · 301 redirects18 Mar 2021

  • CVE-2023-50837
    28İzleyin

    WordPress Login Lockdown Plugin <= 2.06 is vulnerable to SQL Injection

    YüksekCVSS 7,2İstismar yokEPSS %1

    webfactoryltd · wp login lockdown29 Ara 2023

  • CVE-2022-1583
    26İzleyin

    External Links in New Window / New Tab < 1.43 - Tabnabbing

    OrtaCVSS 6,5İstismar yokEPSS %1

    webfactoryltd · external links in new window \/ new tab30 May 2022

  • CVE-2022-1582
    24İzleyin

    External Links in New Window / New Tab < 1.43 - Unauthenticated Stored Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %1

    webfactoryltd · external links in new window \/ new tab30 May 2022

  • CVE-2023-6799
    23İzleyin

    WP Reset <= 2.0 - Sensitive Information Exposure due to Insufficient Randomness

    OrtaCVSS 5,9İstismar yokEPSS %1

    webfactoryltd · wp reset9 Nis 2024

  • CVE-2020-6166
    21İzleyin

    A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.15, allows authenticated users with basic access to export

    OrtaCVSS 5,4İstismar yokEPSS %1

    webfactoryltd · minimal coming soon \& maintenance mode9 Oca 2020

  • CVE-2024-1075
    21İzleyin

    Minimal Coming Soon – Coming Soon Page <= 2.37 - Unauthenticated Maintenance Mode Bypass

    OrtaCVSS 5,3İstismar yokEPSS %1

    webfactoryltd · minimal coming soon \& maintenance mode5 Şub 2024

  • CVE-2021-24424
    21İzleyin

    WP Reset < 1.90 - Authenticated Stored XSS

    OrtaCVSS 5,4İstismar yokEPSS %1

    webfactoryltd · wp reset12 Tem 2021

  • CVE-2024-5087
    21İzleyin

    Minimal Coming Soon – Coming Soon Page <= 2.38 - Missing Authorization to Limited Settings Change

    OrtaCVSS 5,4İstismar yokEPSS %0

    webfactoryltd · minimal coming soon \& maintenance mode8 Haz 2024

  • CVE-2024-1340
    21İzleyin

    Login Lockdown – Protect Login Form <= 2.08 - Missing Authorization

    OrtaCVSS 5,4İstismar yokEPSS %0

    webfactoryltd · wp login lockdown28 Şub 2024

  • CVE-2023-49747
    21İzleyin

    WordPress Guest Author Plugin <= 2.3 is vulnerable to Cross Site Scripting (XSS)

    OrtaCVSS 5,4İstismar yokEPSS %0

    webfactoryltd · guest author15 Ara 2023

  • CVE-2025-1262
    21İzleyin

    Advanced Google reCaptcha <= 1.27 - Built-in Math CAPTCHA Bypass

    OrtaCVSS 5,3İstismar yokEPSS %0

    webfactoryltd · advanced google recaptcha25 Şub 2025

  • CVE-2021-24533
    19İzleyin

    Maintenance < 4.03 - Authenticated Stored XSS

    OrtaCVSS 4,8İstismar yokEPSS %1

    webfactoryltd · maintenance23 Ağu 2021

  • CVE-2023-1913
    19İzleyin

    Maps Widget for Google Maps <= 4.24 - Authenticated (Administrator+) Stored Cross-Site Scripting

    OrtaCVSS 4,8İstismar yokEPSS %0

    webfactoryltd · maps widget for google maps6 Nis 2023

  • CVE-2024-1501
    18İzleyin

    Database Reset <= 3.22 - Cross-Site Request Forgery to WP Reset Plugin Installation

    OrtaCVSS 4,7İstismar yokEPSS %0

    webfactoryltd · wp database reset21 Şub 2024

  • CVE-2023-3601
    17İzleyin

    Simple Author Box < 2.52 - Contributor+ Arbitrary User Information Disclosure via IDOR

    OrtaCVSS 4,3İstismar yokEPSS %1

    webfactoryltd · simple author box14 Ağu 2023

  • CVE-2024-5770
    17İzleyin

    WP Force SSL & HTTPS SSL Redirect <= 1.66 - Missing Authorization to Settings Update

    OrtaCVSS 4,3İstismar yokEPSS %0

    webfactoryltd · wp force ssl8 Haz 2024

  • CVE-2024-4661
    17İzleyin

    WP Reset <= 2.02 - Missing Authorization to License Key Modification

    OrtaCVSS 4,3İstismar yokEPSS %0

    webfactoryltd · wp reset8 Haz 2024