Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In 2024
Missing Authorization vulnerability in WofficeIO Woffice Core allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Woffice Core: from n/a through 5.4.8.
CVSS Score
8.2
EPSS Score
0.005
Published
2024-11-01
Missing Authorization vulnerability in WPMU DEV - Your All-in-One WordPress Platform Defender Security defender-security.This issue affects Defender Security: from n/a through <= 4.7.1.
CVSS Score
5.3
EPSS Score
0.005
Published
2024-11-01
Missing Authorization vulnerability in ProfileGrid User Profiles ProfileGrid allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ProfileGrid: from n/a through 5.8.7.
CVSS Score
4.3
EPSS Score
0.004
Published
2024-11-01
Missing Authorization vulnerability in andy_moyle Church Admin church-admin.This issue affects Church Admin: from n/a through <= 4.4.4.
CVSS Score
4.3
EPSS Score
0.003
Published
2024-11-01
Authorization Bypass Through User-Controlled Key vulnerability in Paid Memberships Pro allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Paid Memberships Pro: from n/a through 3.0.4.
CVSS Score
7.5
EPSS Score
0.007
Published
2024-11-01
Missing Authorization vulnerability in E2Pdf e2pdf e2pdf.This issue affects e2pdf: from n/a through <= 1.20.27.
CVSS Score
5.4
EPSS Score
0.003
Published
2024-11-01
Missing Authorization vulnerability in Roxnor ElementsKit Elementor addons Lite elementskit-lite.This issue affects ElementsKit Elementor addons Lite: from n/a through <= 3.1.4.
CVSS Score
5.3
EPSS Score
0.004
Published
2024-11-01
Missing Authorization vulnerability in PropertyHive PropertyHive allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PropertyHive: from n/a through 2.0.9.
CVSS Score
4.3
EPSS Score
0.004
Published
2024-11-01
Missing Authorization vulnerability in Uncanny Owl Uncanny Automator Pro allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Uncanny Automator Pro: from n/a through 5.3.0.0.
CVSS Score
5.3
EPSS Score
0.005
Published
2024-11-01
Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows a remote attacker to escalate privileges via a crafted script to the filename parameter of the home.php component.
CVSS Score
4.6
EPSS Score
0.004
Published
2024-11-01


Contact Us

Shodan ® - All rights reserved