WebberZone records
8 published records for vendor webberzone.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 75%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-352 Cross-Site Request Forgery (CSRF)3
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
- CWE-862 Missing Authorization1
The weakness classes this vendor ships most often: where to look.
CWEAll records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2023-47238No exploit | WordPress Top 10 Plugin <= 3.3.2 is vulnerable to Cross Site Request Forgery (CSRF)webberzone · top 10 · CWE-352 | High8.8 | — | 0.3% | Nov 9, 2023 |
28Monitor | CVE-2024-29142No exploit | WordPress Better Search plugin <= 3.3.0 - Stored Cross Site Scripting (XSS) vulnerabilitywebberzone · better search · CWE-79 | High7.1 | — | 0.4% | Mar 19, 2024 |
21Monitor | CVE-2023-0252No exploit | Contextual Related Posts < 3.3.1 - Contributor+ Stored XSSwebberzone · contextual related posts · CWE-79 | Medium5.4 | — | 0.5% | Feb 6, 2023 |
21Monitor | CVE-2024-51677No exploit | WordPress Knowledge Base plugin <= 2.2.0 - Cross Site Scripting (XSS) vulnerabilitywebberzone · knowledge base · CWE-79 | Medium5.4 | — | 0.2% | Nov 4, 2024 |
17Monitor | CVE-2020-36761No exploit | Top 10 <= 2.9.4 - Cross-Site Request Forgery Bypasswebberzone · top 10 · CWE-352 | Medium4.3 | — | 0.6% | Jul 12, 2023 |
17Monitor | CVE-2021-4373No exploit | Better Search <= 2.5.2 - Cross-Site Request Forgery to Settings Importwebberzone · better search · CWE-288 | Medium4.3 | — | 0.5% | Jun 6, 2023 |
17Monitor | CVE-2023-25993No exploit | WordPress Top 10 – Popular posts plugin for WordPress plugin <= 3.2.3 - Broken Access Control vulnerabilitywebberzone · top 10 · CWE-862 | Medium4.3 | — | 0.4% | Dec 9, 2024 |
17Monitor | CVE-2021-4400No exploit | Better Search <= 2.5.2 - Cross-Site Request Forgery Bypasswebberzone · better search · CWE-352 | Medium4.3 | — | 0.4% | Jul 1, 2023 |
- CVE-2023-4723835Monitor
WordPress Top 10 Plugin <= 3.3.2 is vulnerable to Cross Site Request Forgery (CSRF)
HighCVSS 8.8No exploitEPSS 0%webberzone · top 10Nov 9, 2023
- CVE-2024-2914228Monitor
WordPress Better Search plugin <= 3.3.0 - Stored Cross Site Scripting (XSS) vulnerability
HighCVSS 7.1No exploitEPSS 0%webberzone · better searchMar 19, 2024
- CVE-2023-025221Monitor
Contextual Related Posts < 3.3.1 - Contributor+ Stored XSS
MediumCVSS 5.4No exploitEPSS 1%webberzone · contextual related postsFeb 6, 2023
- CVE-2024-5167721Monitor
WordPress Knowledge Base plugin <= 2.2.0 - Cross Site Scripting (XSS) vulnerability
MediumCVSS 5.4No exploitEPSS 0%webberzone · knowledge baseNov 4, 2024
- CVE-2020-3676117Monitor
Top 10 <= 2.9.4 - Cross-Site Request Forgery Bypass
MediumCVSS 4.3No exploitEPSS 1%webberzone · top 10Jul 12, 2023
- CVE-2021-437317Monitor
Better Search <= 2.5.2 - Cross-Site Request Forgery to Settings Import
MediumCVSS 4.3No exploitEPSS 0%webberzone · better searchJun 6, 2023
- CVE-2023-2599317Monitor
WordPress Top 10 – Popular posts plugin for WordPress plugin <= 3.2.3 - Broken Access Control vulnerability
MediumCVSS 4.3No exploitEPSS 0%webberzone · top 10Dec 9, 2024
- CVE-2021-440017Monitor
Better Search <= 2.5.2 - Cross-Site Request Forgery Bypass
MediumCVSS 4.3No exploitEPSS 0%webberzone · better searchJul 1, 2023