İçeriğe atla
Noroxi

iptanus kayıtları

iptanus üreticisine ait 25 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%12
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

25 kayıt
  • CVE-2024-9047
    67Bu hafta

    WordPress File Upload <= 4.24.11 - Unauthenticated Path Traversal to Arbitrary File Read and Deletion in wfu_file_downloader.php

    KritikCVSS 9,8Kavram kanıtıEPSS %93

    iptanus · wordpress file upload12 Eki 2024

  • CVE-2020-10564
    42Planlayın

    An issue was discovered in the File Upload plugin before 4.13.0 for WordPress.

    KritikCVSS 9,8İstismar yokEPSS %9

    iptanus · wordpress file upload13 Mar 2020

  • CVE-2024-11613
    40Planlayın

    WordPress File Upload <= 4.24.15 - Unauthenticated Remote Code Execution, Arbitrary File Read, and Arbitrary File Deletion

    KritikCVSS 9,8Kavram kanıtıEPSS %4

    iptanus · wordpress file upload8 Oca 2025

  • CVE-2024-11635
    39İzleyin

    WordPress File Upload <= 4.24.12 - Unuathenticated Remote Code Execution

    KritikCVSS 9,8Kavram kanıtıEPSS %1

    iptanus · wordpress file upload8 Oca 2025

  • CVE-2021-24962
    36İzleyin

    WordPress File Upload < 4.16.3 - Contributor+ Path Traversal to RCE

    YüksekCVSS 8,8İstismar yokEPSS %3

    iptanus · wordpress file upload28 Mar 2022

  • CVE-2015-9338
    30İzleyin

    The wp-file-upload plugin before 2.5.0 for WordPress has insufficient restrictions on upload of .php files.

    YüksekCVSS 7,5İstismar yokEPSS %1

    iptanus · wordpress file upload22 Ağu 2019

  • CVE-2015-9341
    30İzleyin

    The wp-file-upload plugin before 3.4.1 for WordPress has insufficient restrictions on upload of .php.js files.

    YüksekCVSS 7,5İstismar yokEPSS %1

    iptanus · wordpress file upload22 Ağu 2019

  • CVE-2015-9340
    30İzleyin

    The wp-file-upload plugin before 3.0.0 for WordPress has insufficient restrictions on upload of php, js, pht, php3, php4, php5, phtml, htm,

    YüksekCVSS 7,5İstismar yokEPSS %1

    iptanus · wordpress file upload22 Ağu 2019

  • CVE-2015-9339
    30İzleyin

    The wp-file-upload plugin before 2.7.1 for WordPress has insufficient restrictions on upload of .js files.

    YüksekCVSS 7,5İstismar yokEPSS %1

    iptanus · wordpress file upload22 Ağu 2019

  • CVE-2024-9939
    30İzleyin

    WordPress File Upload <= 4.24.13 - Unauthenticated Path Traversal to Arbitrary File Read in wfu_file_downloader.php

    YüksekCVSS 7,5İstismar yokEPSS %1

    iptanus · wordpress file upload8 Oca 2025

  • CVE-2024-6651
    29İzleyin

    WordPress File Upload < 4.24.8 - Reflected XSS

    OrtaCVSS 6,1Kavram kanıtıEPSS %15

    iptanus · wordpress file upload6 Ağu 2024

  • CVE-2018-9844
    25İzleyin

    The Iptanus WordPress File Upload plugin before 4.3.4 for WordPress mishandles Settings attributes, leading to XSS.

    OrtaCVSS 6,1Kavram kanıtıEPSS %4

    iptanus · wordpress file upload7 Nis 2018

  • CVE-2024-7301
    24İzleyin

    WordPress File Upload <= 4.24.8 - Unauthenticated Stored Cross-Site Scripting via SVG File Upload

    OrtaCVSS 6,1İstismar yokEPSS %0

    iptanus · wordpress file upload16 Ağu 2024

  • CVE-2024-6494
    24İzleyin

    WordPress File Upload < 4.24.8 - Unauthenticated Stored XSS

    OrtaCVSS 6,1İstismar yokEPSS %0

    iptanus · wordpress file upload7 Ağu 2024

  • CVE-2018-9172
    22İzleyin

    The Iptanus WordPress File Upload plugin before 4.3.3 for WordPress mishandles shortcode attributes.

    OrtaCVSS 5,4Kavram kanıtıEPSS %3

    iptanus · wordpress file upload1 Nis 2018

  • CVE-2023-2767
    22İzleyin

    WordPress File Upload / WordPress File Upload Pro <= 4.19.1 - Authenticated (Administrator+) Stored Cross-Site Scripting

    OrtaCVSS 5,5İstismar yokEPSS %0

    iptanus · wordpress file upload9 Haz 2023

  • CVE-2021-24960
    21İzleyin

    WordPress File Upload < 4.16.3 - Contributor+ Stored Cross-Site Scripting via Malicious SVG

    OrtaCVSS 5,4İstismar yokEPSS %1

    iptanus · wordpress file upload7 Mar 2022

  • CVE-2021-24961
    21İzleyin

    WordPress File Upload < 4.16.3 - Contributor+ Stored Cross-Site Scripting via Shortcode

    OrtaCVSS 5,4İstismar yokEPSS %1

    iptanus · wordpress file upload7 Mar 2022

  • CVE-2023-4811
    21İzleyin

    WordPress File Upload < 4.23.3 - Author+ Stored Cross-Site Scripting

    OrtaCVSS 5,4İstismar yokEPSS %0

    iptanus · wordpress file upload16 Eki 2023

  • CVE-2024-2847
    21İzleyin

    WordPress File Upload <= 4.24.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode

    OrtaCVSS 5,4İstismar yokEPSS %0

    iptanus · wordpress file upload9 Nis 2024

  • CVE-2023-2688
    20İzleyin

    WordPress File Upload / WordPress File Upload Pro <= 4.19.1 - Authenticated (Administrator+) Path Traversal

    OrtaCVSS 4,9İstismar yokEPSS %2

    iptanus · wordpress file upload9 Haz 2023

  • CVE-2024-5852
    17İzleyin

    WordPress File Upload <= 4.24.7 - Authenticated (Contributor+) Directory Traversal

    OrtaCVSS 4,3İstismar yokEPSS %1

    iptanus · wordpress file upload16 Tem 2024

  • CVE-2024-12719
    17İzleyin

    WordPress File Upload <= 4.24.15 - Missing Authorization to Authenticated (Subscriber+) Limited Path Traversal

    OrtaCVSS 4,3İstismar yokEPSS %0

    iptanus · wordpress file upload7 Oca 2025

  • CVE-2024-13494
    17İzleyin

    WordPress File Upload <= 4.25.2 - Cross-Site Request Forgery in wfu_file_details

    OrtaCVSS 4,3İstismar yokEPSS %0

    iptanus · wordpress file upload25 Şub 2025

  • CVE-2024-39639
    14İzleyin

    WordPress File Upload plugin <= 4.24.7 - Broken Access Control + CSRF vulnerability

    DüşükCVSS 3,5İstismar yokEPSS %0

    iptanus · wordpress file upload1 Kas 2024