Skip to content
Noroxi

weiphp records

4 published records for vendor weiphp.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 20
  2. 25

Bar: total · dark part: CISA KEV.

All records

4 records
  • SQL injection vulnerability in the wp_where function in WeiPHP 5.0.

    CriticalCVSS 9.8Proof of conceptEPSS 9%

    weiphp · weiphpDec 18, 2020

  • WeiPHP Path Traversal Arbitrary File Read

    HighCVSS 8.7Proof of conceptEPSS 4%

    weiphp · weiphpJun 26, 2025

  • WeiPHP v5.0 and before is vulnerable to SQL Injection via the SucaiController.class.php file and the cancelTemplatee

    HighCVSS 8.4No exploitEPSS 0%

    weiphp · weiphpSep 8, 2025

  • WeiPHP 5.0 does not properly restrict access to pages, related to using POST.

    HighCVSS 7.5No exploitEPSS 1%

    weiphp · weiphpDec 18, 2020