importwp records
3 published records for vendor importwp.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 33.3%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-918 Server-Side Request Forgery (SSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2024-13562No exploit | Import WP – Export and Import CSV and XML files to WordPress <= 2.14.5 - Unauthenticated Sensitive Information Exposure Through Unprotected Directoryimportwp · import wp · CWE-200 | High7.5 | — | 0.4% | Jan 25, 2025 |
28Monitor | CVE-2022-1273No exploit | Import WP < 2.4.6 - Admin+ Arbitrary File Upload to RCEimportwp · import wp · CWE-434 | High7.2 | — | 1.5% | May 2, 2022 |
24Monitor | CVE-2023-7253No exploit | Import WP < 2.13.1 - Admin+ Server-side Request Forgeryimportwp · import wp · CWE-918 | Medium6.1 | — | 0.6% | Apr 24, 2024 |
- CVE-2024-1356230Monitor
Import WP – Export and Import CSV and XML files to WordPress <= 2.14.5 - Unauthenticated Sensitive Information Exposure Through Unprotected Directory
HighCVSS 7.5No exploitEPSS 0%importwp · import wpJan 25, 2025
- CVE-2022-127328Monitor
Import WP < 2.4.6 - Admin+ Arbitrary File Upload to RCE
HighCVSS 7.2No exploitEPSS 1%importwp · import wpMay 2, 2022
- CVE-2023-725324Monitor
Import WP < 2.13.1 - Admin+ Server-side Request Forgery
MediumCVSS 6.1No exploitEPSS 1%importwp · import wpApr 24, 2024