CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Accesspressthemes 1Access Demo Importer Nov 21, 2024 Apr 18, 2022 N/A· v4 8.1 HIGH· v3 5.8 MEDIUM· v2 Cross-Site Request Forgery (CSRF) in Access Demo Importer <= 1.0.7 on WordPress allows an attacker to reset all data (posts / pages / media). |
1Accesspressthemes 1Access Demo Importer Nov 21, 2024 Apr 18, 2022 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Cross-Site Request Forgery (CSRF) in Access Demo Importer <= 1.0.7 on WordPress allows an attacker to activate any installed plugin. |
1Accesspressthemes 43Access Demo Importer Accesspress LiteAccesspress Mag+40 moreNov 21, 2024 Oct 11, 2021 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 A WordPress plugin and several WordPress themes developed by AccessPress Themes are vulnerable to malicious file uploads via the plugin_offline_installer AJAX action due to a missing capability check in the plugin_offlin...Show more |