CVE-2025-66121
- EPSS 0.04%
- Veröffentlicht 16.12.2025 08:12:52
- Zuletzt bearbeitet 20.01.2026 15:19:08
Missing Authorization vulnerability in SiteGround SiteGround Security sg-security allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SiteGround Security: from n/a through <= 1.5.8.
CVE-2024-38774
- EPSS 0.09%
- Veröffentlicht 01.11.2024 15:15:35
- Zuletzt bearbeitet 01.11.2024 20:24:53
Missing Authorization vulnerability in SiteGround SiteGround Security allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SiteGround Security: from n/a through 1.5.0.
CVE-2023-0234
- EPSS 6.67%
- Veröffentlicht 06.02.2023 20:15:14
- Zuletzt bearbeitet 25.03.2025 19:15:40
The SiteGround Security WordPress plugin before 1.3.1 does not properly sanitize user input before using it in an SQL query, leading to an authenticated SQL injection issue.
CVE-2022-0993
- EPSS 3.27%
- Veröffentlicht 19.04.2022 21:15:13
- Zuletzt bearbeitet 21.11.2024 06:39:48
The SiteGround Security plugin for WordPress is vulnerable to authentication bypass that allows unauthenticated users to log in as administrative users due to missing identity verification on the 2FA back-up code implementation that logs users in upo...