realbigplugins records
3 published records for vendor realbigplugins.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-862 Missing Authorization1
The weakness classes this vendor ships most often: where to look.
CWEAll records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
24Monitor | CVE-2019-17071No exploit | The client-dash (aka Client Dash) plugin 2.1.4 for WordPress allows XSS.realbigplugins · client dash · CWE-79 | Medium6.1 | — | 0.9% | Oct 10, 2019 |
21Monitor | CVE-2024-33652No exploit | WordPress Client Dash plugin <= 2.2.1 - Broken Access Control vulnerabilityreal big plugins · client dash · CWE-862 | Medium5.3 | — | 0.5% | Apr 29, 2024 |
21Monitor | CVE-2023-49165No exploit | WordPress Client Dash Plugin <= 2.2.1 is vulnerable to Cross Site Scripting (XSS)realbigplugins · client dash · CWE-79 | Medium5.4 | — | 0.4% | Dec 15, 2023 |
- CVE-2019-1707124Monitor
The client-dash (aka Client Dash) plugin 2.1.4 for WordPress allows XSS.
MediumCVSS 6.1No exploitEPSS 1%realbigplugins · client dashOct 10, 2019
- CVE-2024-3365221Monitor
WordPress Client Dash plugin <= 2.2.1 - Broken Access Control vulnerability
MediumCVSS 5.3No exploitEPSS 1%real big plugins · client dashApr 29, 2024
- CVE-2023-4916521Monitor
WordPress Client Dash Plugin <= 2.2.1 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%realbigplugins · client dashDec 15, 2023