Aa-team
Aa-team Wzone: vulnerabilidades y CVE
Aa-team Wzone tiene 9 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses3
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-27040 | Alta (8.8) | 0.55% | — | 25 mar 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in AA-Team WZone woozone allows Path Traversal.This issue affects WZone: from n/a through <= 14.0.31. |
| CVE-2026-27039 | Alta (8.5) | 0.36% | — | 25 mar 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team WZone woozone allows Blind SQL Injection.This issue affects WZone: from n/a through <= 14.0.31. |
| CVE-2026-25473 | Media (5.4) | 0.30% | — | 19 feb 2026 | Missing Authorization vulnerability in AA-Team WZone woozone allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WZone: from n/a through <= 14.0.31. |
| CVE-2024-33547 | Alta (8.8) | 0.39% | — | 9 jun 2024 | Missing Authorization vulnerability in AA-Team WZone.This issue affects WZone: from n/a through 14.0.10. |
| CVE-2024-33545 | Crítica (9.8) | 0.36% | — | 9 jun 2024 | Missing Authorization vulnerability in AA-Team WZone.This issue affects WZone: from n/a through 14.0.10. |
| CVE-2024-33549 | Alta (8.8) | 0.51% | — | 17 may 2024 | Improper Privilege Management vulnerability in AA-Team WZone allows Privilege Escalation.This issue affects WZone: from n/a through 14.0.10. |
| CVE-2024-33546 | Crítica (9.6) | 0.53% | — | 29 abr 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team WZone allows SQL Injection.This issue affects WZone: from n/a through 14.0.10. |
| CVE-2024-33544 | Crítica (9.3) | 0.63% | — | 29 abr 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team WZone allows SQL Injection.This issue affects WZone: from n/a through 14.0.10. |
| CVE-2024-33548 | Alta (7.1) | 0.38% | — | 29 abr 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AA-Team WZone allows Reflected XSS.This issue affects WZone: from n/a through 14.0.10. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Aa-team
Woocommerce Envato Affiliates · 2PRO Bulk Watermark · 2Amazon Affiliates Addon FOR Wpbakery Page Builder · 2Premium SEO Pack · 1Responsive Coming Soon Landing Page / Holding Page FOR Wordpress · 1Searchazon · 1Woocommerce Sales Funnel Builder · 1Wordpress Movies Bulk Importer · 1Amazon Native Shopping Recommendations · 1Premium AGE Verification / Restriction FOR Wordpress · 1