Записи SmartDataSoft
7 опубликованных записей вендора smartdatasoft.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-463 Deletion of Data Structure Sentinel1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
61На этой неделе | CVE-2021-37538Proof of concept | Multiple SQL injection vulnerabilities in SmartDataSoft SmartBlog for PrestaShop before 4.06 allow a remote unauthenticated attacker to execsmartdatasoft · smartblog · CWE-89 | Критическая9,8 | — | 74,5 % | 24 авг. 2021 г. |
35Наблюдать | CVE-2020-36972Эксплойта нет | SmartBlog 2.0.1 - 'id_post' Blind SQL injectionsmartdatasoft · smartblog · CWE-89 | Высокая8,8 | — | 0,3 % | 28 янв. 2026 г. |
27Наблюдать | CVE-2024-13347Эксплойта нет | Essential WP Real Estate <= 1.1.3 - Reflected XSSsmartdatasoft · essential wp real estate · CWE-79 | Средняя6,8 | — | 0,6 % | 3 февр. 2025 г. |
25Наблюдать | CVE-2021-24335Proof of concept | Car Repair Services < 4.0 - Unauthenticated Reflected XSS & XFSsmartdatasoft · car repair services \& auto mechanic · CWE-79 | Средняя6,1 | — | 3,9 % | 1 июн. 2021 г. |
24Наблюдать | CVE-2024-12725Эксплойта нет | Clasify Classified Listing <= 1.0.7 - Reflected XSSsmartdatasoft · clasify classified listing · CWE-79 | Средняя6,1 | — | 0,3 % | 15 мая 2025 г. |
24Наблюдать | CVE-2025-23857Эксплойта нет | WordPress Essential WP Real Estate Plugin <= 1.1.3 - Reflected Cross Site Scripting (XSS) vulnerabilitysmartdatasoft · essential wp real estate · CWE-79 | Средняя6,1 | — | 0,3 % | 14 февр. 2025 г. |
21Наблюдать | CVE-2024-13318Эксплойта нет | Essential WP Real Estate <= 1.1.3 - Missing Authorization to Arbitrary Post/Page Deletionsmartdatasoft · essential wp real estate · CWE-463 | Средняя5,3 | — | 0,3 % | 10 янв. 2025 г. |
- CVE-2021-3753861На этой неделе
Multiple SQL injection vulnerabilities in SmartDataSoft SmartBlog for PrestaShop before 4.06 allow a remote unauthenticated attacker to exec
КритическаяCVSS 9,8Proof of conceptEPSS 74 %smartdatasoft · smartblog24 авг. 2021 г.
- CVE-2020-3697235Наблюдать
SmartBlog 2.0.1 - 'id_post' Blind SQL injection
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %smartdatasoft · smartblog28 янв. 2026 г.
- CVE-2024-1334727Наблюдать
Essential WP Real Estate <= 1.1.3 - Reflected XSS
СредняяCVSS 6,8Эксплойта нетEPSS 1 %smartdatasoft · essential wp real estate3 февр. 2025 г.
- CVE-2021-2433525Наблюдать
Car Repair Services < 4.0 - Unauthenticated Reflected XSS & XFS
СредняяCVSS 6,1Proof of conceptEPSS 4 %smartdatasoft · car repair services \& auto mechanic1 июн. 2021 г.
- CVE-2024-1272524Наблюдать
Clasify Classified Listing <= 1.0.7 - Reflected XSS
СредняяCVSS 6,1Эксплойта нетEPSS 0 %smartdatasoft · clasify classified listing15 мая 2025 г.
- CVE-2025-2385724Наблюдать
WordPress Essential WP Real Estate Plugin <= 1.1.3 - Reflected Cross Site Scripting (XSS) vulnerability
СредняяCVSS 6,1Эксплойта нетEPSS 0 %smartdatasoft · essential wp real estate14 февр. 2025 г.
- CVE-2024-1331821Наблюдать
Essential WP Real Estate <= 1.1.3 - Missing Authorization to Arbitrary Post/Page Deletion
СредняяCVSS 5,3Эксплойта нетEPSS 0 %smartdatasoft · essential wp real estate10 янв. 2025 г.