Known Vulnerabilities for products from Accesspressthemes
Listed below are 18 of the newest known vulnerabilities associated with the vendor "Accesspressthemes".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-28661 json | The WP Popup Banners WordPress Plugin, version <= 1.2.5, is affected by an authenticated SQL injection vulnerability in the '... | 8.8 - HIGH | 2023-03-22 | 2023-03-28 |
| CVE-2023-26532 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 8.8 - HIGH | 2023-11-22 | 2023-11-27 |
| CVE-2023-26518 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 8.8 - HIGH | 2023-11-13 | 2023-11-17 |
| CVE-2023-0175 json | The Responsive Clients Logo Gallery Plugin for WordPress plugin through 1.1.9 does not validate and escape some of its shortc... | 5.4 - MEDIUM | 2023-03-20 | 2023-11-07 |
| CVE-2022-23976 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 8.1 - HIGH | 2022-04-18 | 2022-04-27 |
| CVE-2022-23975 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.5 - MEDIUM | 2022-04-18 | 2022-04-27 |
| CVE-2022-23912 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.1 - MEDIUM | 2022-02-28 | 2022-03-08 |
| CVE-2022-23911 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 7.2 - HIGH | 2022-02-28 | 2022-03-08 |
| CVE-2022-4946 json | The Frontend Post WordPress Plugin WordPress plugin through 2.8.4 does not validate an attribute of one of its shortcode, whi... | 5.4 - MEDIUM | 2023-06-05 | 2023-11-07 |
| CVE-2022-0628 json | The Mega Menu WordPress plugin before 3.0.8 does not sanitize and escape the _wpnonce parameter before outputting it back in ... | 6.1 - MEDIUM | 2022-03-21 | 2022-03-28 |
| CVE-2021-39317 json | A WordPress plugin and several WordPress themes developed by AccessPress Themes are vulnerable to malicious file uploads via ... | 8.8 - HIGH | 2021-10-11 | 2022-12-09 |
| CVE-2021-25107 json | The Form Store to DB WordPress plugin before 1.1.1 does not sanitise and escape parameter keys before outputting it back in t... | 6.1 - MEDIUM | 2022-02-14 | 2022-02-22 |
| CVE-2021-24867 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 9.8 - CRITICAL | 2022-02-21 | 2022-03-02 |
| CVE-2021-24858 json | The Cookie Notification Plugin for WordPress plugin before 1.0.9 does not sanitise or escape the id GET parameter before usin... | 7.2 - HIGH | 2022-01-24 | 2022-01-27 |
| CVE-2021-24143 json | Unvalidated input in the AccessPress Social Icons plugin, versions before 1.8.1, did not sanitise its widget attribute, allow... | 8.8 - HIGH | 2021-03-18 | 2021-03-22 |
| CVE-2020-25378 json | Wordpress Plugin Store / AccessPress Themes WP Floating Menu V1.3.0 is affected by: Cross Site Scripting (XSS) via the id GET... | 6.1 - MEDIUM | 2020-09-14 | 2020-09-17 |
| CVE-2017-16949 json | An issue was discovered in the AccessKeys AccessPress Anonymous Post Pro plugin through 3.1.9 for WordPress. Improper input s... | Not Provided | 2017-12-19 | 2025-04-20 |
| CVE-2017-15919 json | The ultimate-form-builder-lite plugin before 1.3.7 for WordPress has SQL Injection, with resultant PHP Object Injection, via ... | Not Provided | 2017-10-26 | 2025-04-20 |
Known software with vulnerabilities from Accesspressthemes
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Accesspressthemes | Anonymous Post Pro | 3.1.9 |
| Application | Accesspressthemes | Ultimate-form-builder-lite | 1.0.0 |
| Application | Accesspressthemes | Wp Floating Menu | 1.3.0 |