POSIMYTH kayıtları
posimyth üreticisine ait 42 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %23,8
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')25
- CWE-862 Missing Authorization3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor3
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
42 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
43Planlayın | CVE-2021-24175Kavram kanıtı | The Plus Addons for Elementor Page Builder < 4.1.7 - Authentication Bypassposimyth · the plus addons for elementor · CWE-287 | Kritik9,8 | — | %14,5 | 5 Nis 2021 |
40Planlayın | CVE-2021-24949İstismar yok | The Plus Addons for Elementor Pro < 5.0.7 - Unauthenticated SQL Injectionposimyth · the plus addons for elementor · CWE-89 | Kritik9,8 | — | %1,7 | 10 Oca 2022 |
39İzleyin | CVE-2023-45657Kavram kanıtı | WordPress Nexter Theme <= 2.0.3 is vulnerable to SQL Injectionposimyth · nexter · CWE-89 | Kritik9,8 | — | %1,3 | 6 Kas 2023 |
39İzleyin | CVE-2023-47178İstismar yok | WordPress The Plus Addons for Elementor Pro plugin <= 5.2.8 - Unauthenticated Local File Inclusion vulnerabilityposimyth · the plus addons for elementor · CWE-22 | Kritik9,8 | — | %0,6 | 17 May 2024 |
35İzleyin | CVE-2021-4331İstismar yok | The Plus Addons for Elementor PRO <= 4.1.9 & The Plus Addons for Elementor <= 2.0.6 - Authenticated (Contributor+) Privilege Escalationposimyth · the plus addons for elementor · CWE-862 | Yüksek8,8 | — | %0,9 | 7 Mar 2023 |
35İzleyin | CVE-2024-5455İstismar yok | The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce <= 5.5.6 - Authenticated (Contributor+) Local File Inclusionposimyth · the plus addons for elementor · CWE-98 | Yüksek8,8 | — | %0,6 | 21 Haz 2024 |
35İzleyin | CVE-2024-2203İstismar yok | The Plus Addons for Elementor <= 5.4.1 - Authenticated (Contributor+) Local File Inclusion via Clients Widgetposimyth · the plus addons for elementor · CWE-22 | Yüksek8,8 | — | %0,6 | 26 Mar 2024 |
35İzleyin | CVE-2024-43932İstismar yok | WordPress The Plus Addons for Elementor plugin <= 5.6.2 - Broken Access Control vulnerabilityposimyth · the plus addons for elementor · CWE-862 | Yüksek8,8 | — | %0,6 | 1 Kas 2024 |
35İzleyin | CVE-2024-33572İstismar yok | WordPress Nexter Blocks plugin <= 3.2.5 - Broken Access Control vulnerabilityposimyth · nexter blocks · CWE-862 | Yüksek8,8 | — | %0,4 | 9 Haz 2024 |
31İzleyin | CVE-2021-24948İstismar yok | The Plus Addons for Elementor Pro < 5.0.7 - Sensitive Data Disclosureposimyth · the plus addons for elementor · CWE-200 | Yüksek7,5 | — | %1,8 | 10 Oca 2022 |
28İzleyin | CVE-2023-45751İstismar yok | WordPress Nexter Extension Plugin <= 2.0.3 is vulnerable to Remote Code Execution (RCE)posimyth · nexter extension · CWE-94 | Yüksek7,2 | — | %0,6 | 29 Ara 2023 |
26İzleyin | CVE-2021-4332İstismar yok | The Plus Addons for Elementor PRO <= 4.1.9 & The Plus Addons for Elementor <= 2.0.6 - Authenticated (Contributor+) Arbitrary File Readposimyth · the plus addons for elementor · CWE-73 | Orta6,5 | — | %0,8 | 7 Mar 2023 |
25İzleyin | CVE-2021-24351Kavram kanıtı | The Plus Addons for Elementor < 4.1.12 - Reflected Cross-Site Scripting (XSS)posimyth · the plus addons for elementor · CWE-79 | Orta6,1 | — | %2,5 | 14 Haz 2021 |
25İzleyin | CVE-2021-24358Kavram kanıtı | The Plus Addons for Elementor Page Builder < 4.1.10 - Open Redirectposimyth · the plus addons for elementor · CWE-601 | Orta6,1 | — | %2,3 | 14 Haz 2021 |
25İzleyin | CVE-2024-2210İstismar yok | The Plus Addons for Elementor <= 5.4.1 - Authenticated (Contributor+) Local File Inclusion via Team Member Listingposimyth · the plus addons for elementor · CWE-22 | Orta6,4 | — | %0,5 | 26 Mar 2024 |
24İzleyin | CVE-2023-45750İstismar yok | WordPress Nexter Extension Plugin <= 2.0.3 is vulnerable to Cross Site Scripting (XSS)posimyth · nexter extension · CWE-79 | Orta6,1 | — | %0,4 | 25 Eki 2023 |
24İzleyin | CVE-2024-5344İstismar yok | The Plus Addons for Elementor Page Builder <= 5.5.6 - Reflected Cross-Site Scripting via WP Login and Register Widgetposimyth · the plus addons for elementor · CWE-79 | Orta6,1 | — | %0,3 | 20 Haz 2024 |
21İzleyin | CVE-2021-24359İstismar yok | The Plus Addons for Elementor Page Builder < 4.1.11 - Arbitrary Reset Pwd Email Sendingposimyth · the plus addons for elementor · CWE-284 | Orta5,3 | — | %1,1 | 14 Haz 2021 |
21İzleyin | CVE-2024-4484İstismar yok | The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce <= 5.5.2 - Authenticated (Contributor+) Stored Cross-Site Scriposimyth · the plus addons for elementor · CWE-79 | Orta5,4 | — | %0,7 | 24 May 2024 |
21İzleyin | CVE-2021-24266İstismar yok | The Plus Addons for Elementor Page Builder Lite < 2.0.6 - Contributor+ Stored XSSposimyth · the plus addons for elementor page builder lite · CWE-79 | Orta5,4 | — | %0,6 | 5 May 2021 |
21İzleyin | CVE-2024-0445İstismar yok | The Plus Addons for Elementor <= 5.4.2 - Authenticated (Contributor+) Stored Cross-Site Scriptingposimyth · the plus addons for elementor · CWE-79 | Orta5,4 | — | %0,5 | 14 May 2024 |
21İzleyin | CVE-2024-3199İstismar yok | The Plus Addons for Elementor <= 5.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widgetposimyth · the plus addons for elementor · CWE-79 | Orta5,4 | — | %0,5 | 2 May 2024 |
21İzleyin | CVE-2024-3197İstismar yok | The Plus Addons for Elementor <= 5.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Attributesposimyth · the plus addons for elementor · CWE-79 | Orta5,4 | — | %0,4 | 2 May 2024 |
21İzleyin | CVE-2024-11829İstismar yok | The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce <= 6.1.8 - Authenticated (Contributor+) Stored Cross-Site Scriposimyth · the plus addons for elementor · CWE-79 | Orta5,4 | — | %0,4 | 1 Şub 2025 |
21İzleyin | CVE-2024-3718İstismar yok | The Plus Addons for Elementor <= 5.5.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Progress Bar, Header Meta Content, Scroll Navigation, Pricposimyth · the plus addons for elementor · CWE-79 | Orta5,4 | — | %0,4 | 24 May 2024 |
- CVE-2021-2417543Planlayın
The Plus Addons for Elementor Page Builder < 4.1.7 - Authentication Bypass
KritikCVSS 9,8Kavram kanıtıEPSS %14posimyth · the plus addons for elementor5 Nis 2021
- CVE-2021-2494940Planlayın
The Plus Addons for Elementor Pro < 5.0.7 - Unauthenticated SQL Injection
KritikCVSS 9,8İstismar yokEPSS %2posimyth · the plus addons for elementor10 Oca 2022
- CVE-2023-4565739İzleyin
WordPress Nexter Theme <= 2.0.3 is vulnerable to SQL Injection
KritikCVSS 9,8Kavram kanıtıEPSS %1posimyth · nexter6 Kas 2023
- CVE-2023-4717839İzleyin
WordPress The Plus Addons for Elementor Pro plugin <= 5.2.8 - Unauthenticated Local File Inclusion vulnerability
KritikCVSS 9,8İstismar yokEPSS %1posimyth · the plus addons for elementor17 May 2024
- CVE-2021-433135İzleyin
The Plus Addons for Elementor PRO <= 4.1.9 & The Plus Addons for Elementor <= 2.0.6 - Authenticated (Contributor+) Privilege Escalation
YüksekCVSS 8,8İstismar yokEPSS %1posimyth · the plus addons for elementor7 Mar 2023
- CVE-2024-545535İzleyin
The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce <= 5.5.6 - Authenticated (Contributor+) Local File Inclusion
YüksekCVSS 8,8İstismar yokEPSS %1posimyth · the plus addons for elementor21 Haz 2024
- CVE-2024-220335İzleyin
The Plus Addons for Elementor <= 5.4.1 - Authenticated (Contributor+) Local File Inclusion via Clients Widget
YüksekCVSS 8,8İstismar yokEPSS %1posimyth · the plus addons for elementor26 Mar 2024
- CVE-2024-4393235İzleyin
WordPress The Plus Addons for Elementor plugin <= 5.6.2 - Broken Access Control vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1posimyth · the plus addons for elementor1 Kas 2024
- CVE-2024-3357235İzleyin
WordPress Nexter Blocks plugin <= 3.2.5 - Broken Access Control vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0posimyth · nexter blocks9 Haz 2024
- CVE-2021-2494831İzleyin
The Plus Addons for Elementor Pro < 5.0.7 - Sensitive Data Disclosure
YüksekCVSS 7,5İstismar yokEPSS %2posimyth · the plus addons for elementor10 Oca 2022
- CVE-2023-4575128İzleyin
WordPress Nexter Extension Plugin <= 2.0.3 is vulnerable to Remote Code Execution (RCE)
YüksekCVSS 7,2İstismar yokEPSS %1posimyth · nexter extension29 Ara 2023
- CVE-2021-433226İzleyin
The Plus Addons for Elementor PRO <= 4.1.9 & The Plus Addons for Elementor <= 2.0.6 - Authenticated (Contributor+) Arbitrary File Read
OrtaCVSS 6,5İstismar yokEPSS %1posimyth · the plus addons for elementor7 Mar 2023
- CVE-2021-2435125İzleyin
The Plus Addons for Elementor < 4.1.12 - Reflected Cross-Site Scripting (XSS)
OrtaCVSS 6,1Kavram kanıtıEPSS %2posimyth · the plus addons for elementor14 Haz 2021
- CVE-2021-2435825İzleyin
The Plus Addons for Elementor Page Builder < 4.1.10 - Open Redirect
OrtaCVSS 6,1Kavram kanıtıEPSS %2posimyth · the plus addons for elementor14 Haz 2021
- CVE-2024-221025İzleyin
The Plus Addons for Elementor <= 5.4.1 - Authenticated (Contributor+) Local File Inclusion via Team Member Listing
OrtaCVSS 6,4İstismar yokEPSS %0posimyth · the plus addons for elementor26 Mar 2024
- CVE-2023-4575024İzleyin
WordPress Nexter Extension Plugin <= 2.0.3 is vulnerable to Cross Site Scripting (XSS)
OrtaCVSS 6,1İstismar yokEPSS %0posimyth · nexter extension25 Eki 2023
- CVE-2024-534424İzleyin
The Plus Addons for Elementor Page Builder <= 5.5.6 - Reflected Cross-Site Scripting via WP Login and Register Widget
OrtaCVSS 6,1İstismar yokEPSS %0posimyth · the plus addons for elementor20 Haz 2024
- CVE-2021-2435921İzleyin
The Plus Addons for Elementor Page Builder < 4.1.11 - Arbitrary Reset Pwd Email Sending
OrtaCVSS 5,3İstismar yokEPSS %1posimyth · the plus addons for elementor14 Haz 2021
- CVE-2024-448421İzleyin
The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce <= 5.5.2 - Authenticated (Contributor+) Stored Cross-Site Scri
OrtaCVSS 5,4İstismar yokEPSS %1posimyth · the plus addons for elementor24 May 2024
- CVE-2021-2426621İzleyin
The Plus Addons for Elementor Page Builder Lite < 2.0.6 - Contributor+ Stored XSS
OrtaCVSS 5,4İstismar yokEPSS %1posimyth · the plus addons for elementor page builder lite5 May 2021
- CVE-2024-044521İzleyin
The Plus Addons for Elementor <= 5.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting
OrtaCVSS 5,4İstismar yokEPSS %1posimyth · the plus addons for elementor14 May 2024
- CVE-2024-319921İzleyin
The Plus Addons for Elementor <= 5.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget
OrtaCVSS 5,4İstismar yokEPSS %1posimyth · the plus addons for elementor2 May 2024
- CVE-2024-319721İzleyin
The Plus Addons for Elementor <= 5.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Attributes
OrtaCVSS 5,4İstismar yokEPSS %0posimyth · the plus addons for elementor2 May 2024
- CVE-2024-1182921İzleyin
The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce <= 6.1.8 - Authenticated (Contributor+) Stored Cross-Site Scri
OrtaCVSS 5,4İstismar yokEPSS %0posimyth · the plus addons for elementor1 Şub 2025
- CVE-2024-371821İzleyin
The Plus Addons for Elementor <= 5.5.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Progress Bar, Header Meta Content, Scroll Navigation, Pric
OrtaCVSS 5,4İstismar yokEPSS %0posimyth · the plus addons for elementor24 May 2024