Перейти к содержимому
Noroxi

Записи wpdevart

41 опубликованных записей вендора wpdevart.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
2
С записью об исправлении
31,7 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

41 записей
  • CVE-2021-24442
    53В плане

    Poll, Survey, Questionnaire and Voting system < 1.5.3 - Unauthenticated Blind SQL Injection

    КритическаяCVSS 9,8Proof of conceptEPSS 46 %

    wpdevart · poll\, survey\, questionnaire and voting system12 июл. 2021 г.

  • CVE-2022-3982
    40В плане

    Booking Calendar < 3.2.2 - Unauthenticated Arbitrary File Upload

    КритическаяCVSS 9,8Proof of conceptEPSS 5 %

    wpdevart · booking calendar12 дек. 2022 г.

  • CVE-2017-14125
    40В плане

    SQL injection vulnerability in the Responsive Image Gallery plugin before 1.2.1 for WordPress allows remote attackers to execute arbitrary S

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    wpdevart · responsive image gallery gallery album25 сент. 2017 г.

  • CVE-2022-47428
    39Наблюдать

    WordPress Booking calendar, Appointment Booking System Plugin <= 3.2.7 is vulnerable to SQL Injection

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    wpdevart · booking calendar6 нояб. 2023 г.

  • CVE-2023-24373
    39Наблюдать

    WordPress Booking calendar, Appointment Booking System plugin <= 3.2.3 - Bypass vulnerability

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    wpdevart · booking calendar3 июн. 2024 г.

  • CVE-2021-34636
    35Наблюдать

    Countdown and CountUp, WooCommerce Sales Timer <= 1.5.7 Cross-Site Request Forgery to Stored Cross-Site Scripting

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    wpdevart · countdown and countup\, woocommerce sales timer28 сент. 2021 г.

  • CVE-2023-24407
    35Наблюдать

    WordPress Booking calendar, Appointment Booking System plugin <= 3.2.3 - Broken Access Control vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    wpdevart · booking calendar9 дек. 2024 г.

  • CVE-2024-35750
    35Наблюдать

    WordPress Gallery – Image and Video Gallery with Thumbnails plugin <= 2.0.3 - SQL Injection vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    wpdevart · gallery8 июн. 2024 г.

  • CVE-2023-24384
    35Наблюдать

    WordPress Organization chart Plugin <= 1.4.4 is vulnerable to Cross Site Request Forgery (CSRF)

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    wpdevart · organization chart23 февр. 2023 г.

  • CVE-2023-45629
    35Наблюдать

    WordPress Responsive Image Gallery, Gallery Album Plugin <= 2.0.3 is vulnerable to Cross Site Request Forgery (CSRF)

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    wpdevart · gallery - image and video gallery with thumbnails16 окт. 2023 г.

  • CVE-2018-10363
    30Наблюдать

    An issue was discovered in the WpDevArt "Booking calendar, Appointment Booking System" plugin 2.2.2 for WordPress.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    wpdevart · booking calendar13 июн. 2018 г.

  • CVE-2023-0900
    29Наблюдать

    AP Pricing Tables Lite <= 1.1.6 - Admin+ SQLi

    ВысокаяCVSS 7,2Proof of conceptEPSS 3 %

    wpdevart · pricing table builder5 июн. 2023 г.

  • CVE-2024-9504
    28Наблюдать

    Booking calendar, Appointment Booking System <= 3.2.15 - Unauthenticated Stored Cross-Site Scripting via SVG File Upload

    ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %

    wpdevart · booking calendar, appointment booking system26 нояб. 2024 г.

  • CVE-2024-10856
    26Наблюдать

    Booking Calendar WpDevArt <= 3.2.19 - Authenticated (Contributor+) SQL Injection

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    wpdevart · booking calendar24 дек. 2024 г.

  • CVE-2022-1946
    25Наблюдать

    Gallery < 2.0.0 - Reflected Cross-Site Scripting

    СредняяCVSS 6,1Proof of conceptEPSS 2 %

    wpdevart · gallery4 июл. 2022 г.

  • CVE-2024-37542
    25Наблюдать

    WordPress Gallery – Image and Video Gallery with Thumbnails plugin <= 2.0.3 - Broken Access Control vulnerability

    СредняяCVSS 6,3Эксплойта нетEPSS 0 %

    wpdevart · gallery6 июл. 2024 г.

  • CVE-2022-0640
    24Наблюдать

    AP Pricing Tables Lite < 1.1.5 - Reflected Cross-Site Scripting

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    wpdevart · pricing table builder21 мар. 2022 г.

  • CVE-2022-47603
    24Наблюдать

    WordPress Responsive Image Gallery, Gallery Album Plugin <= 2.0.1 is vulnerable to Cross Site Scripting (XSS)

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    wpdevart · image and video gallery with thumbnails29 мар. 2023 г.

  • CVE-2024-30550
    24Наблюдать

    WordPress Gallery – Image and Video Gallery with Thumbnails plugin <= 2.0.3 - Reflected Cross Site Scripting (XSS) vulnerability

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    wpdevart · gallery31 мар. 2024 г.

  • CVE-2023-46075
    24Наблюдать

    WordPress Contact Form Builder, Contact Widget Plugin <= 2.1.6 is vulnerable to Cross Site Scripting (XSS)

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    wpdevart · contact form builder26 окт. 2023 г.

  • CVE-2023-45630
    24Наблюдать

    WordPress Responsive Image Gallery, Gallery Album Plugin <= 2.0.3 is vulnerable to Cross Site Scripting (XSS)

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    wpdevart · gallery18 окт. 2023 г.

  • CVE-2021-24464
    21Наблюдать

    YouTube Embed, Playlist and Popup < 2.3.9 - Contributor+ Stored XSS

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    wpdevart · youtube embed\, playlist and popup2 авг. 2021 г.

  • CVE-2021-24577
    21Наблюдать

    Coming Soon and Maintenance Mode < 3.5.3 - Authenticated Stored XSS

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    wpdevart · coming soon and maintenance mode11 окт. 2021 г.

  • CVE-2023-0177
    21Наблюдать

    Social Like Box and Page by WpDevArt < 0.8.41 - Contributor+ Stored XSS

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    wpdevart · social like box and page13 февр. 2023 г.

  • CVE-2024-31120
    21Наблюдать

    WordPress Gallery – Image and Video Gallery with Thumbnails plugin <= 2.0.3 - Cross Site Scripting (XSS) vulnerability

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    wpdevart · gallery31 мар. 2024 г.