İçeriğe atla
Noroxi

ExpressTech kayıtları

expresstech üreticisine ait 43 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%23,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

43 kayıt
  • CVE-2020-35951
    62Bu hafta

    An issue was discovered in the Quiz and Survey Master plugin before 7.0.1 for WordPress.

    KritikCVSS 9,9Kavram kanıtıEPSS %76

    expresstech · quiz and survey master1 Oca 2021

  • CVE-2020-35949
    41Planlayın

    An issue was discovered in the Quiz and Survey Master plugin before 7.0.1 for WordPress.

    KritikCVSS 9,8İstismar yokEPSS %5

    expresstech · quiz and survey master1 Oca 2021

  • CVE-2022-41652
    39İzleyin

    WordPress Quiz And Survey Master plugin <= 7.3.10 - Bypass vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    expresstech · quiz and survey master18 Kas 2022

  • CVE-2021-24160
    37İzleyin

    Responsive Menu 4.0.0 - 4.0.3 - Authenticated Arbitrary File Upload

    YüksekCVSS 8,8Kavram kanıtıEPSS %8

    expresstech · responsive menu5 Nis 2021

  • CVE-2023-0291
    37İzleyin

    Quiz And Survey Master <= 8.0.8 - Unauthenticated Arbitrary Media Deletion

    KritikCVSS 9,1İstismar yokEPSS %2

    expresstech · quiz and survey master9 Haz 2023

  • CVE-2021-24221
    36İzleyin

    Quiz And Survey Master < 7.1.12 - Authenticated SQL injection via shortcode

    YüksekCVSS 8,8İstismar yokEPSS %2

    expresstech · quiz and survey master12 Nis 2021

  • CVE-2022-25602
    35İzleyin

    WordPress Responsive Menu plugin <= 4.1.7 - Nonce token leak leading to arbitrary file upload, theme deletion, plugin settings change vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %1

    expresstech · responsive menu18 Mar 2022

  • CVE-2021-24161
    35İzleyin

    Responsive Menu < 4.0.4 - CSRF to Arbitrary File Upload

    YüksekCVSS 8,8İstismar yokEPSS %1

    expresstech · responsive menu5 Nis 2021

  • CVE-2021-24162
    35İzleyin

    Responsive Menu < 4.0.4 - CSRF to Settings Update

    YüksekCVSS 8,8İstismar yokEPSS %1

    expresstech · responsive menu5 Nis 2021

  • CVE-2022-0180
    35İzleyin

    Cross-site request forgery (CSRF) vulnerability in Quiz And Survey Master versions prior to 7.3.7 allows a remote attacker to hijack the aut

    YüksekCVSS 8,8İstismar yokEPSS %1

    expresstech · quiz and survey master17 Oca 2022

  • CVE-2017-18513
    35İzleyin

    The responsive-menu plugin before 3.1.4 for WordPress has no CSRF protection mechanism for the admin interface.

    YüksekCVSS 8,8İstismar yokEPSS %1

    expresstech · responsive menu14 Ağu 2019

  • CVE-2024-5606
    35İzleyin

    Quiz And Survey Master < 9.0.2 - Contributor+ SQLi

    YüksekCVSS 8,8İstismar yokEPSS %1

    expresstech · quiz and survey master2 Tem 2024

  • CVE-2021-36906
    35İzleyin

    WordPress Quiz And Survey Master plugin <= 7.3.6 - Multiple Insecure direct object references (IDOR) vulnerabilities

    YüksekCVSS 8,8İstismar yokEPSS %1

    expresstech · quiz and survey master3 Kas 2022

  • CVE-2022-46862
    35İzleyin

    WordPress Quiz And Survey Master Plugin <= 8.0.7 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    expresstech · quiz and survey master14 Şub 2023

  • CVE-2023-26524
    35İzleyin

    WordPress Quiz And Survey Master Plugin <= 8.0.10 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    expresstech · quiz and survey master12 Kas 2023

  • CVE-2023-0292
    32İzleyin

    Quiz And Survey Master <= 8.0.8 - Cross-Site Request Forgery to Arbitrary Media Deletion

    YüksekCVSS 8,1İstismar yokEPSS %1

    expresstech · quiz and survey master9 Haz 2023

  • CVE-2022-42883
    30İzleyin

    WordPress Quiz And Survey Master plugin <= 7.3.10 - Sensitive Information Disclosure vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %1

    expresstech · quiz and survey master18 Kas 2022

  • CVE-2021-36898
    28İzleyin

    WordPress Quiz And Survey Master plugin <= 7.3.4 - Auth. SQL Injection (SQLi) vulnerability

    YüksekCVSS 7,2İstismar yokEPSS %1

    expresstech · quiz and survey master28 Eki 2022

  • CVE-2016-11085
    26İzleyin

    php/qmn_options_questions_tab.php in the quiz-master-next plugin before 4.7.9 for WordPress allows CSRF, with resultant stored XSS, via the

    OrtaCVSS 6,5İstismar yokEPSS %1

    expresstech · quiz and survey master16 Ağu 2020

  • CVE-2024-3592
    26İzleyin

    Quiz And Survey Master – Best Quiz, Exam and Survey Plugin for WordPress <= 9.0.1 - Authenticated (Contributor+) SQL Injection

    OrtaCVSS 6,5İstismar yokEPSS %0

    expresstech · quiz and survey master7 Haz 2024

  • CVE-2025-9637
    26İzleyin

    Quiz and Survey Master (QSM) <= 10.3.1 - Missing Authorization to Unpublished, Private And Password-Protected Quiz Information Disclosure And Image Response Upl

    OrtaCVSS 6,5İstismar yokEPSS %0

    expresstech · quiz and survey master6 Oca 2026

  • CVE-2025-9318
    26İzleyin

    Quiz and Survey Master (QSM) <= 10.3.1 - Authenticated (Subscriber+) SQL Injection via `is_linking` Query Parameter

    OrtaCVSS 6,5İstismar yokEPSS %0

    expresstech · quiz and survey master6 Oca 2026

  • CVE-2021-20792
    25İzleyin

    Cross-site scripting vulnerability in Quiz And Survey Master versions prior to 7.1.14 allows a remote attacker to inject arbitrary script vi

    OrtaCVSS 6,1Kavram kanıtıEPSS %3

    expresstech · quiz and survey master18 Ağu 2021

  • CVE-2019-17599
    24İzleyin

    The quiz-master-next (aka Quiz And Survey Master) plugin before 6.3.5 for WordPress is affected by: Cross Site Scripting (XSS).

    OrtaCVSS 6,1İstismar yokEPSS %2

    expresstech · quiz and survey master13 Ara 2019

  • CVE-2022-0181
    24İzleyin

    Reflected cross-site scripting vulnerability in Quiz And Survey Master versions prior to 7.3.7 allows a remote attacker to inject an arbitra

    OrtaCVSS 6,1İstismar yokEPSS %1

    expresstech · quiz and survey master17 Oca 2022