Wp-ecommerce
Wp-ecommerce Easy WP Smtp: vulnerabilidades y CVE
Wp-ecommerce Easy WP Smtp tiene 8 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE8
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-3073 | Baja (2.7) | 0.33% | — | 13 jun 2024 | The Easy WP SMTP by SendLayer – WordPress SMTP and Email Log Plugin plugin for WordPress is vulnerable to information exposure in all versions up to, and including, 2.3.0. This is due to plugin providing the SMTP… |
| CVE-2019-25141 | Crítica (9.8) | 4.5% | — | 7 jun 2023 | The Easy WP SMTP plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 1.3.9. This is due to missing capability checks on the admin_init() function, in addition to insufficient… |
| CVE-2022-42699 | Alta (8.8) | 1.4% | — | 6 dic 2022 | Auth. Remote Code Execution vulnerability in Easy WP SMTP plugin <= 1.5.1 on WordPress. |
| CVE-2022-45833 | Media (6.5) | 0.79% | — | 6 dic 2022 | Auth. Path Traversal vulnerability in Easy WP SMTP plugin <= 1.5.1 on WordPress. |
| CVE-2022-45829 | Alta (8.1) | 0.86% | — | 6 dic 2022 | Auth. Path Traversal vulnerability in Easy WP SMTP plugin <= 1.5.1 at WordPress. |
| CVE-2022-3334 | Alta (7.2) | 1.2% | — | 31 oct 2022 | The Easy WP SMTP WordPress plugin before 1.5.0 unserialises the content of an imported file, which could lead to PHP object injection issue when an admin import (intentionally or not) a malicious file and a suitable… |
| CVE-2020-35234 | Alta (7.5) | 65% | — | 14 dic 2020 | The easy-wp-smtp plugin before 1.4.4 for WordPress allows Administrator account takeover, as exploited in the wild in December 2020. If an attacker can list the wp-content/plugins/easy-wp-smtp/ directory, then they can… |
| CVE-2017-7723 | Media (6.1) | 0.78% | — | 24 abr 2017 | XSS exists in Easy WP SMTP (before 1.2.5), a WordPress Plugin, via the e-mail subject or body. |