Перейти к содержимому
Noroxi

Записи bPlugins

22 опубликованных записей вендора bplugins.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
45,5 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

22 записей
  • CVE-2024-1061
    42В плане

    The 'HTML5 Video Player' WordPress Plugin, version < 2.5.25 is affected by an unauthenticated SQL injection vulnerability in the 'id' parame

    КритическаяCVSS 9,8Proof of conceptEPSS 11 %

    bplugins · html5 video player30 янв. 2024 г.

  • CVE-2023-46084
    35Наблюдать

    WordPress Icons Font Loader Plugin <= 1.1.2 is vulnerable to SQL Injection

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    bplugins · icons font loader6 нояб. 2023 г.

  • CVE-2024-43296
    35Наблюдать

    WordPress HTML5 Video Player plugin <= 2.5.30 - Broken Access Control vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    bplugins · html5 video player1 нояб. 2024 г.

  • CVE-2025-22787
    35Наблюдать

    WordPress Button Block plugin <= 1.1.5 - Broken Access Control vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    bplugins · button block15 янв. 2025 г.

  • CVE-2023-5860
    28Наблюдать

    Icons Font Loader <= 1.1.2 - Authenticated (Administrator+) Arbitrary File Upload

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    bplugins · icons font loader2 нояб. 2023 г.

  • CVE-2024-24714
    28Наблюдать

    WordPress Icons Font Loader Plugin <= 1.1.4 is vulnerable to Arbitrary File Upload

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    bplugins · icons font loader26 февр. 2024 г.

  • CVE-2024-5522
    27Наблюдать

    HTML5 Video Player < 2.5.27 - Unauthenticated SQLi

    СредняяCVSS 6,5Proof of conceptEPSS 3 %

    bplugins · html5 video player20 июн. 2024 г.

  • CVE-2024-10671
    26Наблюдать

    Button Block – Get fully customizable & multi-functional buttons <= 1.1.4 - Authenticated (Contributor+) Post Disclosure

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    bplugins · button block21 нояб. 2024 г.

  • CVE-2024-12560
    26Наблюдать

    Button Block – Get fully customizable & multi-functional buttons <= 1.1.5 - Authenticated (Contributor+) Post Disclosure via Post Duplication

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    bplugins · button block19 дек. 2024 г.

  • CVE-2024-23508
    24Наблюдать

    WordPress PDF Poster - PDF Embedder Plugin for WordPress Plugin <= 2.1.17 is vulnerable to Cross Site Scripting (XSS)

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    bplugins · pdf poster31 янв. 2024 г.

  • CVE-2021-24775
    21Наблюдать

    Document Embedder < 1.7.5 - Unauthenticated Arbitrary Private/Draft Post Title Disclosure

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    bplugins · document embedder1 февр. 2022 г.

  • CVE-2021-24412
    21Наблюдать

    Html5 Audio Player < 2.1.3 - Contributor+ Stored Cross-Site Scripting

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    bplugins · html5 audio player18 окт. 2021 г.

  • CVE-2021-24413
    21Наблюдать

    Easy Twitter Feed < 1.2 - Contributor+ Stored Cross-Site Scripting

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    bplugins · easy twitter feed18 окт. 2021 г.

  • CVE-2021-24416
    21Наблюдать

    StreamCast < 2.1.1 - Contributor+ Stored Cross-Site Scripting

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    bplugins · streamcast radio player18 окт. 2021 г.

  • CVE-2021-24415
    21Наблюдать

    Polo Video Gallery <= 1.2 - Contributor+ Stored Cross-Site Scripting

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    bplugins · polo video gallery18 окт. 2021 г.

  • CVE-2023-0170
    21Наблюдать

    Html5 Audio Player < 2.1.12 - Contributor+ Stored XSS

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    bplugins · html5 audio player6 февр. 2023 г.

  • CVE-2023-6485
    21Наблюдать

    Html5 Video Player < 2.5.19 - Subscriber+ Stored XSS

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    bplugins · html5 video player1 янв. 2024 г.

  • CVE-2024-7727
    21Наблюдать

    HTML5 Video Player – mp4 Video Player Plugin and Block <= 2.5.32 - Missing Authorization in multiple functions via h5vp_ajax_handler

    СредняяCVSS 5,3Эксплойта нетEPSS 0 %

    bplugins · html5 video player11 сент. 2024 г.

  • CVE-2024-37445
    21Наблюдать

    WordPress HTML5 Audio Player plugin <= 2.2.23 - Cross Site Scripting (XSS) vulnerability

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bplugins · html5 audio player22 июл. 2024 г.

  • CVE-2025-22815
    21Наблюдать

    WordPress Button Block plugin <= 1.1.9 - Cross Site Scripting (XSS) vulnerability

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bplugins · button block9 янв. 2025 г.

  • CVE-2021-24868
    17Наблюдать

    Document Embedder < 1.7.9 - Subscriber+ Arbitrary Private/Draft Post Title Disclosure

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    bplugins · document embedder1 февр. 2022 г.

  • CVE-2024-7721
    17Наблюдать

    HTML5 Video Player – mp4 Video Player Plugin and Block <= 2.5.34 - Missing Authorization to Authenticated (Subscriber+) Limited Options Update

    СредняяCVSS 4,3Эксплойта нетEPSS 0 %

    bplugins · html5 video player11 сент. 2024 г.