Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Unknown — Vulnerabilities & Security Advisories 4152

Browse all 4152 CVE security advisories affecting Unknown. AI-powered Chinese analysis, POCs, and references for each vulnerability.

“Unknown” represents a broad category of unclassified or poorly documented software components, currently associated with 4,141 recorded CVEs. These vulnerabilities typically stem from legacy architectures or proprietary systems lacking transparent security audits. Common flaw classes include remote code execution, cross-site scripting, and privilege escalation, often resulting from inadequate input validation or hardcoded credentials. Due to the opaque nature of these products, detailed security characteristics are frequently absent, making risk assessment difficult for organizations. Major incidents involving “Unknown” entities often highlight systemic failures in patch management and vendor accountability. The sheer volume of vulnerabilities suggests widespread reliance on unsupported or obscure technologies within critical infrastructure. Addressing these risks requires rigorous inventory management and proactive threat hunting, as standard mitigation strategies may not apply to such undefined software ecosystems.

CVE IDTitleCVSSSeverityPublished
CVE-2023-7268 ArtPlacer Widget < 2.21.2 - Subscriber+ Arbitrary Widget Deletion — ArtPlacer Widget 4.3 -2024-07-19
CVE-2024-6164 Filter & Grids < 2.8.33 - Unauthenticated LFI — Filter & Grids 9.8AICriticalAI2024-07-18
CVE-2024-6289 WPS Hide Login < 1.9.16.4 - Hidden Login Page Disclosure — WPS Hide Login 6.1 -2024-07-15
CVE-2024-6076 WP eStore < 8.5.5 - Reflected XSS in Category Editing — wp-cart-for-digital-products 6.1 -2024-07-15
CVE-2024-6075 WP eStore < 8.5.5 - Coupon Deletion via CSRF — wp-cart-for-digital-products 8.1 -2024-07-15
CVE-2024-6074 WP eStore < 8.5.5 - Reflected XSS in Customer Editing — wp-cart-for-digital-products 6.1 -2024-07-15
CVE-2024-6073 WP eStore < 8.5.5 - Reflected XSS in Discount Editing — wp-cart-for-digital-products 6.1 -2024-07-15
CVE-2024-6072 WP eStore < 8.5.5 - Reflected XSS via $_SERVER['REQUEST_URI'] — wp-cart-for-digital-products 6.1 -2024-07-15
CVE-2024-5630 Insert or Embed Articulate Content into WordPress < 4.3000000024 - Author+ Arbitrary File Upload — Insert or Embed Articulate Content into WordPress 8.8 -2024-07-15
CVE-2024-6070 if-so < 1.8.0.4 - Admin+ Stored XSS — If-So Dynamic Content Personalization 4.8AIMediumAI2024-07-13
CVE-2024-5644 WordPress Plugin Tournamatch < 4.6.1 - Admin+ Stored XSS via Ladders — Tournamatch 4.8AIMediumAI2024-07-13
CVE-2024-5744 WP eMember < 10.6.7 - Reflected XSS — wp-eMember 6.1AIMediumAI2024-07-13
CVE-2024-5715 WP eMember < 10.6.7 - Reflected XSS via Member Edit — wp-eMember 6.1AIMediumAI2024-07-13
CVE-2024-5713 if-so < 1.8.0.4 - Reflected XSS — If-So Dynamic Content Personalization 6.1AIMediumAI2024-07-13
CVE-2024-5575 Ditty < 3.1.43 - Author+ Stored XSS — Ditty 4.8AIMediumAI2024-07-13
CVE-2024-5442 NextGEN Gallery < 3.59.3 - Admin+ Stored XSS — Photo Gallery, Sliders, Proofing and Themes 4.8AIMediumAI2024-07-13
CVE-2024-5627 WordPress Plugin Tournamatch < 4.6.1 - Subscriber+ Stored XSS — Tournamatch 5.4AIMediumAI2024-07-13
CVE-2024-5450 Bug Library < 2.1.1 - Unauthenticated RCE — Bug Library 9.8AICriticalAI2024-07-13
CVE-2024-5472 WP QuickLaTeX < 3.8.7 - Admin+ Stored XSS in Background Color field — WP QuickLaTeX 4.8AIMediumAI2024-07-13
CVE-2024-5283 WP Affiliate Platform < 6.5.1 - Reflected XSS via Lead Editing — wp-affiliate-platform 6.1AIMediumAI2024-07-13
CVE-2024-5284 WP Affiliate Platform < 6.5.1 - Stored XSS via CSRF — wp-affiliate-platform 6.1AIMediumAI2024-07-13
CVE-2024-5282 WP Affiliate Platform < 6.5.1 - Reflected XSS via Registration Form — wp-affiliate-platform 6.1AIMediumAI2024-07-13
CVE-2024-5287 WP Affiliate Platform < 6.5.1 - Profile Update via CSRF — wp-affiliate-platform 4.3AIMediumAI2024-07-13
CVE-2024-5286 WP Affiliate Platform < 6.5.1 - Reflected XSS via Banner Editing — wp-affiliate-platform 6.1AIMediumAI2024-07-13
CVE-2024-5280 WP Affiliate Platform < 6.5.1 - POST Reflected XSS — wp-affiliate-platform 6.1AIMediumAI2024-07-13
CVE-2024-5281 WP Affiliate Platform < 6.5.1 - Reflected XSS via Affiliate Editing — wp-affiliate-platform 6.1AIMediumAI2024-07-13
CVE-2024-5080 WP eMember < 10.6.6 - Admin+ Arbitrary File Upload — wp-eMember 7.2AIHighAI2024-07-13
CVE-2024-5167 CM Email Registration Blacklist and Whitelist < 1.4.9 - Add/Delete Emails via CSRF Add and delete any item from blacklist/whitelist — CM Email Registration Blacklist and Whitelist 4.3AIMediumAI2024-07-13
CVE-2024-5151 SULly < 4.3.1 - Admin+ Stored XSS — SULly 4.8AIMediumAI2024-07-13
CVE-2024-5075 WP eMember < 10.6.6 - Reflected XSS — wp-eMember 6.1AIMediumAI2024-07-13

This page lists every published CVE security advisory associated with Unknown. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.