Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

UNKNOWN — Vulnerabilities & Security Advisories 4151

Browse all 4151 CVE security advisories affecting UNKNOWN. AI-powered Chinese analysis, POCs, and references for each vulnerability.

“Unknown” represents a broad category of unclassified or poorly documented software components, currently associated with 4,141 recorded CVEs. These vulnerabilities typically stem from legacy architectures or proprietary systems lacking transparent security audits. Common flaw classes include remote code execution, cross-site scripting, and privilege escalation, often resulting from inadequate input validation or hardcoded credentials. Due to the opaque nature of these products, detailed security characteristics are frequently absent, making risk assessment difficult for organizations. Major incidents involving “Unknown” entities often highlight systemic failures in patch management and vendor accountability. The sheer volume of vulnerabilities suggests widespread reliance on unsupported or obscure technologies within critical infrastructure. Addressing these risks requires rigorous inventory management and proactive threat hunting, as standard mitigation strategies may not apply to such undefined software ecosystems.

CVE IDTitleCVSSSeverityPublished
CVE-2021-24327 SEO Redirection < 6.4 - Authenticated Stored Cross-Site Scripting (XSS) — SEO Redirection Plugin – 301 Redirect ManagerCWE-79 4.8 -2021-05-17
CVE-2021-24324 404 SEO Redirection <= 1.3 - CSRF to Stored Cross-Site Scripting (XSS) — 404 SEO RedirectionCWE-352 6.5 -2021-05-17
CVE-2021-24285 Car Seller - Auto Classifieds Script <= 2.1.0 - Unauthenticated SQL Injection — Car Seller - Auto Classifieds ScriptCWE-89 9.8 -2021-05-14
CVE-2021-24254 College Publisher Import <= 0.1 - Arbitrary File Upload to RCE — College publisher ImportCWE-434 7.2 -2021-05-05
CVE-2021-24252 Event Banner <= 1.3 - Arbitrary File Upload to RCE — Event BannerCWE-434 9.8 -2021-05-05
CVE-2021-24253 Classyfrieds <= 3.8 - Authenticated Arbitrary File Upload to RCE — ClassyfriedsCWE-434 8.8 -2021-05-05
CVE-2021-24293 NextGEN Gallery Pro < 3.1.11 - Reflected Cross-Site Scripting (XSS) — NextGen Gallery ProCWE-79 6.1 -2021-05-05
CVE-2021-24265 Rife Elementor Extensions & Templates < 1.1.6 - Contributor+ Stored XSS — Rife Elementor Extensions & TemplatesCWE-79 5.4 -2021-05-05
CVE-2021-24266 The Plus Addons for Elementor Page Builder Lite < 2.0.6 - Contributor+ Stored XSS — The Plus Addons for Elementor Page Builder LiteCWE-79 5.4 -2021-05-05
CVE-2021-24267 All-in-One Addons for Elementor - WidgetKit < 2.3.10 - Contributor+ Stored XSS — All-in-One Addons for Elementor – WidgetKitCWE-79 5.4 -2021-05-05
CVE-2021-24268 JetWidgets For Elementor < 1.0.9 - Contributor+ Stored XSS — JetWidgets For ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24269 Sina Extension for Elementor < 3.3.12 - Contributor+ Stored XSS — Sina Extension for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24270 DethemeKit For Elementor < 1.5.5.5 - Contributor+ Stored XSS — DethemeKit For ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24271 Ultimate Addons for Elementor < 1.30.0 - Contributor+ Stored XSS — Ultimate Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24272 Fitness Calculators < 1.9.6 - Cross-Site Request Forgery to Cross-Site Scripting (XSS) — fitness calculatorsCWE-352 4.3 -2021-05-05
CVE-2021-24257 Premium Addons for Elementor < 4.2.8 - Contributor+ Stored Cross-Site Scripting (XSS) — Premium Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24259 Elementor Addon Elements < 1.11.2 - Contributor+ Stored XSS — Elementor Addon ElementsCWE-79 5.4 -2021-05-05
CVE-2021-24260 Livemesh Addons for Elementor < 6.8 - Contributor+ Stored XSS — Livemesh Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24261 HT Mega - Absolute Addons for Elementor Page Builder < 1.5.7 - Contributor+ Stored XSS — HT Mega – Absolute Addons for Elementor Page BuilderCWE-79 5.4 -2021-05-05
CVE-2021-24262 WooLentor - WooCommerce Elementor Addons + Builder < 1.8.6 - Contributor+ Stored XSS — WooLentor – WooCommerce Elementor Addons + BuilderCWE-79 5.4 -2021-05-05
CVE-2021-24263 PowerPack Addons for Elementor < 2.3.2 - Contributor+ Stored XSS — PowerPack Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24264 Image Hover Effects - Elementor Addon < 1.3.4 - Contributor+ Stored XSS — Image Hover Effects – Elementor AddonCWE-79 5.4 -2021-05-05
CVE-2021-24255 Essential Addons for Elementor < 4.5.4 - Contributor+ Stored Cross-Site Scripting (XSS) — Essential Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24256 Elementor - Header, Footer & Blocks Template < 1.5.8 - Contributor+ Stored XSS — Elementor – Header, Footer & Blocks TemplateCWE-79 5.4 -2021-05-05
CVE-2021-24239 Pie Register < 3.7.0.1 - Reflected Cross-Site Scripting (XSS) — Pie Register – User Registration Forms. Invitation based registrations, Custom Login, PaymentsCWE-79 6.1 -2021-04-22
CVE-2021-24240 Business Hours Pro <= 5.5.0 - Unauthenticated Arbitrary File Upload to RCE — Business Hours ProCWE-434 9.8 -2021-04-22
CVE-2021-24241 Advanced Custom Field Pro < 5.9.1 - Reflected Cross-Site Scripting (XSS) — Advanced Custom Fields ProCWE-79 6.1 -2021-04-22
CVE-2021-24232 Advanced Booking Calendar < 1.6.8 - Authenticated Reflected Cross-Site Scripting (XSS) — Advanced Booking CalendarCWE-79 5.4 -2021-04-22
CVE-2021-24233 Cooked Pro < 1.7.5.6 - Unauthenticated Reflected Cross Site Scripting (XSS) — Cooked PproCWE-79 6.1 -2021-04-22
CVE-2021-24234 Ivory Search < 4.6.1 - Reflected Cross Site Scripting (XSS) — Ivory Search – WordPress Search PluginCWE-79 6.1 -2021-04-22

This page lists every published CVE security advisory associated with UNKNOWN. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.