Skip to content
Noroxi

beardev records

7 published records for vendor beardev.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
28.6%
Median publish → KEV
No record has entered KEV

All records

7 records
  • The BearDev JoomSport plugin 3.3 for WordPress allows SQL injection to steal, modify, or delete database information via the joomsport_seaso

    CriticalCVSS 9.8Proof of conceptEPSS 21%

    beardev · joomsportAug 5, 2019

  • JoomSport < 5.2.8 - Unauthenticated SQLi

    CriticalCVSS 9.8Proof of conceptEPSS 5%

    beardev · joomsportDec 19, 2022

  • JoomSport < 5.1.8 - Unauthenticated PHP Object Injection

    CriticalCVSS 9.8No exploitEPSS 2%

    beardev · joomsportJul 6, 2021

  • WordPress JoomSport plugin <= 5.3.0 - Broken Access Control vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    beardev · joomsportNov 1, 2024

  • WordPress JoomSport plugin <= 5.6.3 - Broken Access Control vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    beardev · joomsportNov 1, 2024

  • CVE-2022-2718
    19Monitor

    JoomSport – for Sports: Team & League, Football, Hockey & more <= 5.2.5 - Authenticated (Admin+) SQL Injection via orderby

    MediumCVSS 4.9No exploitEPSS 1%

    beardev · joomsportSep 6, 2022

  • CVE-2022-2717
    19Monitor

    JoomSport – for Sports: Team & League, Football, Hockey & more <= 5.2.5 - Authentciated (Admin+) SQL Injection via orderby

    MediumCVSS 4.9No exploitEPSS 1%

    beardev · joomsportSep 6, 2022