SmartDataSoft records
7 published records for vendor smartdatasoft.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-463 Deletion of Data Structure Sentinel1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
61This week | CVE-2021-37538Proof of concept | Multiple SQL injection vulnerabilities in SmartDataSoft SmartBlog for PrestaShop before 4.06 allow a remote unauthenticated attacker to execsmartdatasoft · smartblog · CWE-89 | Critical9.8 | — | 74.5% | Aug 24, 2021 |
35Monitor | CVE-2020-36972No exploit | SmartBlog 2.0.1 - 'id_post' Blind SQL injectionsmartdatasoft · smartblog · CWE-89 | High8.8 | — | 0.3% | Jan 28, 2026 |
27Monitor | CVE-2024-13347No exploit | Essential WP Real Estate <= 1.1.3 - Reflected XSSsmartdatasoft · essential wp real estate · CWE-79 | Medium6.8 | — | 0.6% | Feb 3, 2025 |
25Monitor | CVE-2021-24335Proof of concept | Car Repair Services < 4.0 - Unauthenticated Reflected XSS & XFSsmartdatasoft · car repair services \& auto mechanic · CWE-79 | Medium6.1 | — | 3.9% | Jun 1, 2021 |
24Monitor | CVE-2024-12725No exploit | Clasify Classified Listing <= 1.0.7 - Reflected XSSsmartdatasoft · clasify classified listing · CWE-79 | Medium6.1 | — | 0.3% | May 15, 2025 |
24Monitor | CVE-2025-23857No exploit | WordPress Essential WP Real Estate Plugin <= 1.1.3 - Reflected Cross Site Scripting (XSS) vulnerabilitysmartdatasoft · essential wp real estate · CWE-79 | Medium6.1 | — | 0.3% | Feb 14, 2025 |
21Monitor | CVE-2024-13318No exploit | Essential WP Real Estate <= 1.1.3 - Missing Authorization to Arbitrary Post/Page Deletionsmartdatasoft · essential wp real estate · CWE-463 | Medium5.3 | — | 0.3% | Jan 10, 2025 |
- CVE-2021-3753861This week
Multiple SQL injection vulnerabilities in SmartDataSoft SmartBlog for PrestaShop before 4.06 allow a remote unauthenticated attacker to exec
CriticalCVSS 9.8Proof of conceptEPSS 74%smartdatasoft · smartblogAug 24, 2021
- CVE-2020-3697235Monitor
SmartBlog 2.0.1 - 'id_post' Blind SQL injection
HighCVSS 8.8No exploitEPSS 0%smartdatasoft · smartblogJan 28, 2026
- CVE-2024-1334727Monitor
Essential WP Real Estate <= 1.1.3 - Reflected XSS
MediumCVSS 6.8No exploitEPSS 1%smartdatasoft · essential wp real estateFeb 3, 2025
- CVE-2021-2433525Monitor
Car Repair Services < 4.0 - Unauthenticated Reflected XSS & XFS
MediumCVSS 6.1Proof of conceptEPSS 4%smartdatasoft · car repair services \& auto mechanicJun 1, 2021
- CVE-2024-1272524Monitor
Clasify Classified Listing <= 1.0.7 - Reflected XSS
MediumCVSS 6.1No exploitEPSS 0%smartdatasoft · clasify classified listingMay 15, 2025
- CVE-2025-2385724Monitor
WordPress Essential WP Real Estate Plugin <= 1.1.3 - Reflected Cross Site Scripting (XSS) vulnerability
MediumCVSS 6.1No exploitEPSS 0%smartdatasoft · essential wp real estateFeb 14, 2025
- CVE-2024-1331821Monitor
Essential WP Real Estate <= 1.1.3 - Missing Authorization to Arbitrary Post/Page Deletion
MediumCVSS 5.3No exploitEPSS 0%smartdatasoft · essential wp real estateJan 10, 2025