awesomemotive Vulnerabilities and Affected Products
Vulnerabilities associated with easy_digital_downloads.
Products
Clear product- duplicator3 vulnerabilities
- easy_digital_downloads2 vulnerabilities
- Contact Form by WPForms1 vulnerability
- Easy Digital Downloads1 vulnerability
- Envira Photo Gallery1 vulnerability
- NextGEN Gallery1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-5057CRITICAL | WordPress Easy Digital Downloads plugin <= 3.2.12 - SQL Injection vulnerabilityImproper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Easy Digital Downloads allows SQL Injection.This issue affects Easy Digital Downloads: from n/a through 3.2.12. | CVSS9.3v3.1 | EPSS2.59% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2023-30869CRITICAL | WordPress Easy Digital Downloads Plugin 3.1-3.1.1.4.1 is vulnerable to Privilege EscalationImproper Authentication vulnerability in Easy Digital Downloads plugin allows unauth. Privilege Escalation. This issue affects Easy Digital Downloads: from 3.1 through 3.1.1.4.1. | CVSS9.8v3.1 | EPSS3.1% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |