Vulnerabilities > Accesspressthemes > Accesspress Social Icons

DATE CVE VULNERABILITY TITLE RISK
2022-02-21 CVE-2021-24867 Hidden Functionality vulnerability in Accesspressthemes products
Numerous Plugins and Themes from the AccessPress Themes (aka Access Keys) vendor are backdoored due to their website being compromised.
network
low complexity
accesspressthemes CWE-912
7.5
2021-03-18 CVE-2021-24143 SQL Injection vulnerability in Accesspressthemes Accesspress Social Icons
Unvalidated input in the AccessPress Social Icons plugin, versions before 1.8.1, did not sanitise its widget attribute, allowing accounts with post permission, such as author, to perform SQL injections.
network
low complexity
accesspressthemes CWE-89
6.5