Vulnerabilities > Accesspressthemes > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-02-21 CVE-2021-24867 Unspecified vulnerability in Accesspressthemes products
Numerous Plugins and Themes from the AccessPress Themes (aka Access Keys) vendor are backdoored due to their website being compromised.
network
low complexity
accesspressthemes
critical
9.8
2017-12-19 CVE-2017-16949 Unrestricted Upload of File with Dangerous Type vulnerability in Accesspressthemes Anonymous Post PRO
An issue was discovered in the AccessKeys AccessPress Anonymous Post Pro plugin through 3.1.9 for WordPress.
network
low complexity
accesspressthemes CWE-434
critical
9.8
2017-10-26 CVE-2017-15919 SQL Injection vulnerability in Accesspressthemes Ultimate-Form-Builder-Lite
The ultimate-form-builder-lite plugin before 1.3.7 for WordPress has SQL Injection, with resultant PHP Object Injection, via wp-admin/admin-ajax.php.
network
low complexity
accesspressthemes CWE-89
critical
9.8