Apppresser

Apppresser

8 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.24%
  • Veröffentlicht 13.03.2025 05:15:27
  • Zuletzt bearbeitet 26.05.2025 02:14:52

The AppPresser – Mobile App Framework plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' parameter in all versions up to, and including, 4.4.10 due to insufficient input sanitization and output escaping. This makes it p...

  • EPSS 0.4%
  • Veröffentlicht 26.11.2024 11:21:58
  • Zuletzt bearbeitet 05.06.2025 17:01:36

The AppPresser – Mobile App Framework plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 4.4.6. This is due to the plugin not properly validating a user's password reset code prior to...

  • EPSS 0.25%
  • Veröffentlicht 16.10.2024 02:15:07
  • Zuletzt bearbeitet 17.05.2025 02:49:17

The AppPresser – Mobile App Framework plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 4.4.4. This is due to the appp_reset_password() and validate_reset_password() functions not ha...

  • EPSS 1.65%
  • Veröffentlicht 29.05.2024 05:16:08
  • Zuletzt bearbeitet 05.06.2025 20:48:12

The AppPresser plugin for WordPress is vulnerable to improper missing encryption exception handling on the 'decrypt_value' and on the 'doCookieAuth' functions in all versions up to, and including, 4.3.2. This makes it possible for unauthenticated att...

  • EPSS 0.2%
  • Veröffentlicht 14.05.2024 15:37:06
  • Zuletzt bearbeitet 09.06.2025 20:52:21

Missing Authorization vulnerability in AppPresser Team AppPresser.This issue affects AppPresser: from n/a through 4.3.0.

  • EPSS 0.24%
  • Veröffentlicht 15.04.2024 11:15:09
  • Zuletzt bearbeitet 27.05.2025 16:21:35

Cross-Site Request Forgery (CSRF) vulnerability in AppPresser Team AppPresser.This issue affects AppPresser: from n/a through 4.3.0.

  • EPSS 0.13%
  • Veröffentlicht 12.04.2024 13:15:17
  • Zuletzt bearbeitet 27.05.2025 16:00:59

Cross-Site Request Forgery (CSRF) vulnerability in AppPresser Team AppPresser.This issue affects AppPresser: from n/a through 4.3.0.

  • EPSS 0.29%
  • Veröffentlicht 18.11.2023 02:15:49
  • Zuletzt bearbeitet 21.11.2024 08:34:38

The AppPresser plugin for WordPress is vulnerable to unauthorized password resets in versions up to, and including 4.2.5. This is due to the plugin generating too weak a reset code, and the code used to reset the password has no attempt or time limit...