easy2map records
4 published records for vendor easy2map.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2015-7669No exploit | Multiple directory traversal vulnerabilities in (1) includes/MapImportCSV2.php and (2) includes/MapImportCSV.php in the Easy2Map plugin befoeasy2map · easy2map · CWE-22 | Critical9.8 | — | 7.1% | Dec 27, 2017 |
40Plan | CVE-2015-4615No exploit | Vulnerability in Easy2map-photos WordPress Plugin v1.09 allows SQL Injection via unsanitized mapTemplateName, mapName, mapSettingsXML, pareneasy2map · easy2map-photos · CWE-89 | Critical9.8 | — | 2.2% | Feb 15, 2019 |
31Monitor | CVE-2015-4617No exploit | Vulnerability in Easy2map-photos WordPress Plugin v1.09 MapPinImageUpload.php and MapPinIconSave.php allows path traversal when specifying feasy2map · easy2map-photos · CWE-22 | High7.5 | — | 2.2% | Feb 15, 2019 |
25Monitor | CVE-2015-7668No exploit | Cross-site scripting (XSS) vulnerability in includes/MapPinImageSave.php in the Easy2Map plugin before 1.3.0 for WordPress allows remote atteasy2map · easy2map · CWE-79 | Medium6.1 | — | 2.1% | Dec 27, 2017 |
- CVE-2015-766941Plan
Multiple directory traversal vulnerabilities in (1) includes/MapImportCSV2.php and (2) includes/MapImportCSV.php in the Easy2Map plugin befo
CriticalCVSS 9.8No exploitEPSS 7%easy2map · easy2mapDec 27, 2017
- CVE-2015-461540Plan
Vulnerability in Easy2map-photos WordPress Plugin v1.09 allows SQL Injection via unsanitized mapTemplateName, mapName, mapSettingsXML, paren
CriticalCVSS 9.8No exploitEPSS 2%easy2map · easy2map-photosFeb 15, 2019
- CVE-2015-461731Monitor
Vulnerability in Easy2map-photos WordPress Plugin v1.09 MapPinImageUpload.php and MapPinIconSave.php allows path traversal when specifying f
HighCVSS 7.5No exploitEPSS 2%easy2map · easy2map-photosFeb 15, 2019
- CVE-2015-766825Monitor
Cross-site scripting (XSS) vulnerability in includes/MapPinImageSave.php in the Easy2Map plugin before 1.3.0 for WordPress allows remote att
MediumCVSS 6.1No exploitEPSS 2%easy2map · easy2mapDec 27, 2017