Protect WP Admin < 4.0 - Unauthenticated Protection Bypass | Network Scanner | | Medium(6.1This represents the CVSSV3 score of this vulnerability) | 0.01This represents the EPSS score of this vulnerability | 0.27This represents the EPSS percentile of this vulnerability | No |
User Profile Picture < 2.5.0 - Sensitive Information Disclosure | Network Scanner | | High(7.5This represents the CVSSV3 score of this vulnerability) | 0.01This represents the EPSS score of this vulnerability | 0.68This represents the EPSS percentile of this vulnerability | No |
WPEngine WPGraphQL 0.2.3 - Unauthenticated Comment Posting | Network Scanner | | Medium(5.3This represents the CVSSV3 score of this vulnerability) | 0.22This represents the EPSS score of this vulnerability | 0.96This represents the EPSS percentile of this vulnerability | No |
WordPress InstaWP Connect <= 0.1.0.38 - Unauthenticated User Creation | Network Scanner | | Critical(9.8This represents the CVSSV3 score of this vulnerability) | 0.5This represents the EPSS score of this vulnerability | 0.98This represents the EPSS percentile of this vulnerability | No |
WordPress Loginizer < 1.6.4 – Unauthenticated SQL Injection via `log` Parameter | Network Scanner | | Critical(9.8This represents the CVSSV3 score of this vulnerability) | 0.61This represents the EPSS score of this vulnerability | 0.99This represents the EPSS percentile of this vulnerability | No |
MCP Inspector < 0.14.0 UnauthenticatedRemote Code Execution | Network Scanner | | | 0.01This represents the EPSS score of this vulnerability | 0.54This represents the EPSS percentile of this vulnerability | No |
Flowise Installation Wizard - Exposure | Network Scanner | | | N/A | N/A | No |
Images to WebP < 1.9 - Authenticated Local File Inclusion | Network Scanner | | High(7.5This represents the CVSSV3 score of this vulnerability) | 0.01This represents the EPSS score of this vulnerability | 0.75This represents the EPSS percentile of this vulnerability | No |
XXL-JOB v2.2.0 — Stored Cross Site Scripting | Network Scanner | | Medium(6.1This represents the CVSSV3 score of this vulnerability) | 0.01This represents the EPSS score of this vulnerability | 0.62This represents the EPSS percentile of this vulnerability | No |
WordPress Popup Builder <= 4.2.3 - Unauthenticated Stored XSS | Network Scanner | | Medium(6.1This represents the CVSSV3 score of this vulnerability) | 0.11This represents the EPSS score of this vulnerability | 0.93This represents the EPSS percentile of this vulnerability | No |
Rank Math SEO <= 1.0.40.2 - Redirect Creation via Unprotected REST API Endpoint | Network Scanner | | Medium(6.1This represents the CVSSV3 score of this vulnerability) | 0.01This represents the EPSS score of this vulnerability | 0.63This represents the EPSS percentile of this vulnerability | No |
WordPress Sexy Contact Form (<= 0.9.7) - Arbitrary File Upload | Network Scanner | | Critical(9.8This represents the CVSSV3 score of this vulnerability) | 0.79This represents the EPSS score of this vulnerability | 1This represents the EPSS percentile of this vulnerability | No |
WordPress 10Web Map Builder < 1.0.73 - Unauthenticated SQL Injection | Network Scanner | | Critical(9.8This represents the CVSSV3 score of this vulnerability) | 0.01This represents the EPSS score of this vulnerability | 0.68This represents the EPSS percentile of this vulnerability | No |
Flowise <= 3.0.5 - Account Takeover | Network Scanner | | Critical(9.8This represents the CVSSV3 score of this vulnerability) | 0.01This represents the EPSS score of this vulnerability | 0.2This represents the EPSS percentile of this vulnerability | No |
Acronis Cyber Infrastructure - Default Password | Network Scanner | | Critical(9.8This represents the CVSSV3 score of this vulnerability) | 0.77This represents the EPSS score of this vulnerability | 0.99This represents the EPSS percentile of this vulnerability | No |
WordPress FluentForms <= 5.1.16 - Broken Access Control | Network Scanner | | High(7.5This represents the CVSSV3 score of this vulnerability) | 0.01This represents the EPSS score of this vulnerability | 0.69This represents the EPSS percentile of this vulnerability | No |
Registrations for The Events Calendar < 2.7.5 - Authenticated Reflected Cross-Site Scripting | Network Scanner | | Medium(6.1This represents the CVSSV3 score of this vulnerability) | 0.01This represents the EPSS score of this vulnerability | 0.44This represents the EPSS percentile of this vulnerability | No |
Rank Math SEO <= 1.0.40.2 - Privilege Escalation via Unprotected REST API Endpoint | Network Scanner | | Critical(9.8This represents the CVSSV3 score of this vulnerability) | 0.05This represents the EPSS score of this vulnerability | 0.89This represents the EPSS percentile of this vulnerability | No |
Microsoft FrontPage Configuration - Exposure | Network Scanner | | | N/A | N/A | No |
GiveWP Donation Plugin <= 3.16.1 - Unauthenticated PHP Object Injection | Network Scanner | | Critical(10This represents the CVSSV3 score of this vulnerability) | 0.69This represents the EPSS score of this vulnerability | 0.99This represents the EPSS percentile of this vulnerability | No |
OpenMetadata - Admin User Enumeration | Network Scanner | | | N/A | N/A | No |
WordPress Frontend Login and Registration Blocks Plugin 1.0.7 - Privilege Escalation | Network Scanner | | Critical(9.8This represents the CVSSV3 score of this vulnerability) | 0.33This represents the EPSS score of this vulnerability | 0.97This represents the EPSS percentile of this vulnerability | No |
Phoenix Contact CHARX SEC-3XXX AC Controller < 1.7.3 - Multiple Vulnerabilities | Network Scanner | | | N/A | N/A | No |
Fortinet SSL-VPN - Heap-Based Buffer Overflow | Network Scanner | | Critical(9.8This represents the CVSSV3 score of this vulnerability) | 0.95This represents the EPSS score of this vulnerability | 1This represents the EPSS percentile of this vulnerability | No |
Memos 0.13.2 - Server-Side Request Forgery | Network Scanner | | Medium(6.1This represents the CVSSV3 score of this vulnerability) | 0.08This represents the EPSS score of this vulnerability | 0.92This represents the EPSS percentile of this vulnerability | No |