Known Vulnerabilities for products from Snapcreek
Listed below are 9 of the newest known vulnerabilities associated with the vendor "Snapcreek".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-24398 json | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Snap Creek Software EZP Coming Soon Page plugin <= 1.0.7.3 ... | 4.8 - MEDIUM | 2023-04-07 | 2023-11-07 |
| CVE-2022-2552 json | The Duplicator WordPress plugin before 1.4.7 does not authenticate or authorize visitors before displaying information about ... | 5.3 - MEDIUM | 2022-08-22 | 2023-11-07 |
| CVE-2022-2551 json | The Duplicator WordPress plugin before 1.4.7 discloses the url of the a backup to unauthenticated visitors accessing the main... | 7.5 - HIGH | 2022-08-22 | 2022-08-23 |
| CVE-2020-11738 json | The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal v... | 7.5 - HIGH | 2020-04-13 | 2022-10-05 |
| CVE-2018-25095 json | The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal v... | 9.8 - CRITICAL | 2024-01-08 | 2024-01-11 |
| CVE-2018-17207 json | An issue was discovered in Snap Creek Duplicator before 1.2.42. By accessing leftover installer files (installer.php and inst... | 9.8 - CRITICAL | 2018-09-19 | 2021-10-18 |
| CVE-2018-7543 json | Cross-site scripting (XSS) vulnerability in installer/build/view.step4.php of the SnapCreek Duplicator plugin 1.2.32 for Word... | 6.1 - MEDIUM | 2018-03-26 | 2021-10-18 |
| CVE-2017-16815 json | installer.php in the Snap Creek Duplicator (WordPress Site Migration & Backup) plugin before 1.2.30 for WordPress has XSS bec... | Not Provided | 2017-11-14 | 2025-04-20 |
| CVE-2014-9262 json | The Duplicator plugin in Wordpress before 0.5.10 allows remote authenticated users to create and download backup files. | Not Provided | 2017-08-07 | 2025-04-20 |
Known software with vulnerabilities from Snapcreek
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Snapcreek | Duplicator | 0.1.0 |