thrivethemes kayıtları
thrivethemes üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %60
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-269 Improper Privilege Management1
- CWE-284 Improper Access Control1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
37İzleyin | CVE-2021-24220Kavram kanıtı | All Thrive Themes Legacy Themes < 2.0.0 - Unauthenticated Arbitrary File Upload and Option Deletionthrivethemes · focusblog · CWE-434 | Kritik9,1 | — | %3,9 | 12 Nis 2021 |
35İzleyin | CVE-2023-47782İstismar yok | WordPress Thrive Theme Builder theme < 3.24.0 - Authenticated Privilege Escalation vulnerabilitythrive themes · thrive theme builder · CWE-269 | Yüksek8,8 | — | %0,5 | 17 May 2024 |
35İzleyin | CVE-2023-47781İstismar yok | WordPress Thrive Theme Builder Theme < 3.24.2 is vulnerable to Cross Site Request Forgery (CSRF)thrivethemes · thrive themes builder · CWE-352 | Yüksek8,8 | — | %0,3 | 22 Kas 2023 |
35İzleyin | CVE-2023-51531İstismar yok | WordPress Thrive Automator Plugin <= 1.17 is vulnerable to Cross Site Request Forgery (CSRF)thrivethemes · thrive automator · CWE-352 | Yüksek8,8 | — | %0,2 | 29 Şub 2024 |
22İzleyin | CVE-2021-24219Kavram kanıtı | All Thrive Themes and Plugins - Unauthenticated Option Updatethrivethemes · focusblog · CWE-284 | Orta5,3 | — | %2,1 | 12 Nis 2021 |
- CVE-2021-2422037İzleyin
All Thrive Themes Legacy Themes < 2.0.0 - Unauthenticated Arbitrary File Upload and Option Deletion
KritikCVSS 9,1Kavram kanıtıEPSS %4thrivethemes · focusblog12 Nis 2021
- CVE-2023-4778235İzleyin
WordPress Thrive Theme Builder theme < 3.24.0 - Authenticated Privilege Escalation vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1thrive themes · thrive theme builder17 May 2024
- CVE-2023-4778135İzleyin
WordPress Thrive Theme Builder Theme < 3.24.2 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0thrivethemes · thrive themes builder22 Kas 2023
- CVE-2023-5153135İzleyin
WordPress Thrive Automator Plugin <= 1.17 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0thrivethemes · thrive automator29 Şub 2024
- CVE-2021-2421922İzleyin
All Thrive Themes and Plugins - Unauthenticated Option Update
OrtaCVSS 5,3Kavram kanıtıEPSS %2thrivethemes · focusblog12 Nis 2021