Перейти к содержимому
Noroxi

Записи webfactoryltd

27 опубликованных записей вендора webfactoryltd.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
11,1 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

27 записей
  • CVE-2020-7048
    43В плане

    The WordPress plugin, WP Database Reset through 3.1, contains a flaw that allowed any unauthenticated user to reset any table in the databas

    КритическаяCVSS 9,1Proof of conceptEPSS 23 %

    webfactoryltd · wp database reset16 янв. 2020 г.

  • CVE-2020-7047
    36Наблюдать

    The WordPress plugin, WP Database Reset through 3.1, contains a flaw that gave any authenticated user, with minimal permissions, the ability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    webfactoryltd · wp database reset16 янв. 2020 г.

  • CVE-2019-19915
    36Наблюдать

    The "301 Redirects - Easy Redirect Manager" plugin before 2.45 for WordPress allows users (with subscriber or greater access) to modify, del

    КритическаяCVSS 9,0Эксплойта нетEPSS 1 %

    webfactoryltd · 301 redirects19 дек. 2019 г.

  • CVE-2020-6167
    35Наблюдать

    A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.10, allows a CSRF attack to enable maintenance mode, inject

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    webfactoryltd · minimal coming soon \& maintenance mode9 янв. 2020 г.

  • CVE-2021-36908
    35Наблюдать

    WordPress WP Reset PRO Premium Plugin <= 5.98 - Cross-Site Request Forgery (CSRF) vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    webfactoryltd · wp reset pro18 нояб. 2021 г.

  • CVE-2021-36909
    33Наблюдать

    WordPress WP Reset PRO Premium plugin <= 5.98 - Authenticated Database Reset vulnerability

    ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %

    webfactoryltd · wp reset pro18 нояб. 2021 г.

  • CVE-2020-6168
    31Наблюдать

    A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.10, allows authenticated users with basic access to enable

    ВысокаяCVSS 7,6Эксплойта нетEPSS 2 %

    webfactoryltd · minimal coming soon \& maintenance mode9 янв. 2020 г.

  • CVE-2021-24142
    28Наблюдать

    301 Redirects - Easy Redirect Manager < 2.51 - Authenticated SQL Injection

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    webfactoryltd · 301 redirects18 мар. 2021 г.

  • CVE-2023-50837
    28Наблюдать

    WordPress Login Lockdown Plugin <= 2.06 is vulnerable to SQL Injection

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    webfactoryltd · wp login lockdown29 дек. 2023 г.

  • CVE-2022-1583
    26Наблюдать

    External Links in New Window / New Tab < 1.43 - Tabnabbing

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    webfactoryltd · external links in new window \/ new tab30 мая 2022 г.

  • CVE-2022-1582
    24Наблюдать

    External Links in New Window / New Tab < 1.43 - Unauthenticated Stored Cross-Site Scripting

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    webfactoryltd · external links in new window \/ new tab30 мая 2022 г.

  • CVE-2023-6799
    23Наблюдать

    WP Reset <= 2.0 - Sensitive Information Exposure due to Insufficient Randomness

    СредняяCVSS 5,9Эксплойта нетEPSS 1 %

    webfactoryltd · wp reset9 апр. 2024 г.

  • CVE-2020-6166
    21Наблюдать

    A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.15, allows authenticated users with basic access to export

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    webfactoryltd · minimal coming soon \& maintenance mode9 янв. 2020 г.

  • CVE-2024-1075
    21Наблюдать

    Minimal Coming Soon – Coming Soon Page <= 2.37 - Unauthenticated Maintenance Mode Bypass

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    webfactoryltd · minimal coming soon \& maintenance mode5 февр. 2024 г.

  • CVE-2021-24424
    21Наблюдать

    WP Reset < 1.90 - Authenticated Stored XSS

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    webfactoryltd · wp reset12 июл. 2021 г.

  • CVE-2024-5087
    21Наблюдать

    Minimal Coming Soon – Coming Soon Page <= 2.38 - Missing Authorization to Limited Settings Change

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    webfactoryltd · minimal coming soon \& maintenance mode8 июн. 2024 г.

  • CVE-2024-1340
    21Наблюдать

    Login Lockdown – Protect Login Form <= 2.08 - Missing Authorization

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    webfactoryltd · wp login lockdown28 февр. 2024 г.

  • CVE-2023-49747
    21Наблюдать

    WordPress Guest Author Plugin <= 2.3 is vulnerable to Cross Site Scripting (XSS)

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    webfactoryltd · guest author15 дек. 2023 г.

  • CVE-2025-1262
    21Наблюдать

    Advanced Google reCaptcha <= 1.27 - Built-in Math CAPTCHA Bypass

    СредняяCVSS 5,3Эксплойта нетEPSS 0 %

    webfactoryltd · advanced google recaptcha25 февр. 2025 г.

  • CVE-2021-24533
    19Наблюдать

    Maintenance < 4.03 - Authenticated Stored XSS

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    webfactoryltd · maintenance23 авг. 2021 г.

  • CVE-2023-1913
    19Наблюдать

    Maps Widget for Google Maps <= 4.24 - Authenticated (Administrator+) Stored Cross-Site Scripting

    СредняяCVSS 4,8Эксплойта нетEPSS 0 %

    webfactoryltd · maps widget for google maps6 апр. 2023 г.

  • CVE-2024-1501
    18Наблюдать

    Database Reset <= 3.22 - Cross-Site Request Forgery to WP Reset Plugin Installation

    СредняяCVSS 4,7Эксплойта нетEPSS 0 %

    webfactoryltd · wp database reset21 февр. 2024 г.

  • CVE-2023-3601
    17Наблюдать

    Simple Author Box < 2.52 - Contributor+ Arbitrary User Information Disclosure via IDOR

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    webfactoryltd · simple author box14 авг. 2023 г.

  • CVE-2024-5770
    17Наблюдать

    WP Force SSL & HTTPS SSL Redirect <= 1.66 - Missing Authorization to Settings Update

    СредняяCVSS 4,3Эксплойта нетEPSS 0 %

    webfactoryltd · wp force ssl8 июн. 2024 г.

  • CVE-2024-4661
    17Наблюдать

    WP Reset <= 2.02 - Missing Authorization to License Key Modification

    СредняяCVSS 4,3Эксплойта нетEPSS 0 %

    webfactoryltd · wp reset8 июн. 2024 г.