oturia records
2 published records for vendor oturia.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-287 Improper Authentication1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
66This week | CVE-2018-3810Proof of concept | Authentication Bypass vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackeroturia · smart google code inserter · CWE-287 | Critical9.8 | — | 91.1% | Jan 1, 2018 |
52Plan | CVE-2018-3811Proof of concept | SQL Injection vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackers to exeoturia · smart google code inserter · CWE-89 | Critical9.8 | — | 42.0% | Jan 1, 2018 |
- CVE-2018-381066This week
Authentication Bypass vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attacker
CriticalCVSS 9.8Proof of conceptEPSS 91%oturia · smart google code inserterJan 1, 2018
- CVE-2018-381152Plan
SQL Injection vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackers to exe
CriticalCVSS 9.8Proof of conceptEPSS 42%oturia · smart google code inserterJan 1, 2018