wpcharitable kayıtları
wpcharitable üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %50
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-862 Missing Authorization2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-269 Improper Privilege Management1
- CWE-639 Authorization Bypass Through User-Controlled Key1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2023-4404İstismar yok | Donation Forms by Charitable <= 1.7.0.12 - Unauthenticated Privilege Escalationwpcharitable · charitable · CWE-269 | Kritik9,8 | — | %0,9 | 22 Ağu 2023 |
39İzleyin | CVE-2024-8791İstismar yok | Donation Forms by Charitable – Donations Plugin & Fundraising Platform for WordPress <= 1.8.1.14 - Insecure Direct Object Reference to Account Takeover and Privwpcharitable · charitable · CWE-639 | Kritik9,8 | — | %0,7 | 23 Eyl 2024 |
31İzleyin | CVE-2018-21011İstismar yok | The charitable plugin before 1.5.14 for WordPress has unauthorized access to user and donation details.wpcharitable · charitable · CWE-200 | Yüksek7,5 | — | %1,7 | 9 Eyl 2019 |
26İzleyin | CVE-2024-37510İstismar yok | WordPress Donation Forms by Charitable plugin <= 1.8.1.7 - Broken Access Control vulnerabilitycharitable donations & fundraising team · charitable · CWE-862 | Orta6,5 | — | %0,5 | 1 Kas 2024 |
24İzleyin | CVE-2022-47441İstismar yok | WordPress Charitable Plugin <= 1.7.0.10 is vulnerable to Cross Site Scripting (XSS)wpcharitable · charitable · CWE-79 | Orta6,1 | — | %0,4 | 10 May 2023 |
21İzleyin | CVE-2021-24531İstismar yok | Charitable – Donation Plugin < 1.6.51 - Authenticated Stored Cross-Site Scripting (XSS)wpcharitable · charitable · CWE-79 | Orta5,4 | — | %0,6 | 23 Ağu 2021 |
21İzleyin | CVE-2023-47816İstismar yok | WordPress Charitable Plugin <= 1.7.0.13 is vulnerable to Cross Site Scripting (XSS)wpcharitable · charitable · CWE-79 | Orta5,4 | — | %0,4 | 22 Kas 2023 |
21İzleyin | CVE-2024-37506İstismar yok | WordPress Donation Forms by Charitable plugin <= 1.8.1.7 - Broken Access Control vulnerabilitycharitable donations & fundraising team · charitable · CWE-862 | Orta5,3 | — | %0,4 | 1 Kas 2024 |
- CVE-2023-440439İzleyin
Donation Forms by Charitable <= 1.7.0.12 - Unauthenticated Privilege Escalation
KritikCVSS 9,8İstismar yokEPSS %1wpcharitable · charitable22 Ağu 2023
- CVE-2024-879139İzleyin
Donation Forms by Charitable – Donations Plugin & Fundraising Platform for WordPress <= 1.8.1.14 - Insecure Direct Object Reference to Account Takeover and Priv
KritikCVSS 9,8İstismar yokEPSS %1wpcharitable · charitable23 Eyl 2024
- CVE-2018-2101131İzleyin
The charitable plugin before 1.5.14 for WordPress has unauthorized access to user and donation details.
YüksekCVSS 7,5İstismar yokEPSS %2wpcharitable · charitable9 Eyl 2019
- CVE-2024-3751026İzleyin
WordPress Donation Forms by Charitable plugin <= 1.8.1.7 - Broken Access Control vulnerability
OrtaCVSS 6,5İstismar yokEPSS %0charitable donations & fundraising team · charitable1 Kas 2024
- CVE-2022-4744124İzleyin
WordPress Charitable Plugin <= 1.7.0.10 is vulnerable to Cross Site Scripting (XSS)
OrtaCVSS 6,1İstismar yokEPSS %0wpcharitable · charitable10 May 2023
- CVE-2021-2453121İzleyin
Charitable – Donation Plugin < 1.6.51 - Authenticated Stored Cross-Site Scripting (XSS)
OrtaCVSS 5,4İstismar yokEPSS %1wpcharitable · charitable23 Ağu 2021
- CVE-2023-4781621İzleyin
WordPress Charitable Plugin <= 1.7.0.13 is vulnerable to Cross Site Scripting (XSS)
OrtaCVSS 5,4İstismar yokEPSS %0wpcharitable · charitable22 Kas 2023
- CVE-2024-3750621İzleyin
WordPress Donation Forms by Charitable plugin <= 1.8.1.7 - Broken Access Control vulnerability
OrtaCVSS 5,3İstismar yokEPSS %0charitable donations & fundraising team · charitable1 Kas 2024