目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

merkulove 厂商漏洞列表 / CVE 中文分析 40

merkulove 厂商相关 40 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

Merkulove 主要提供企业级内容管理系统及数字资产管理解决方案,旨在优化多媒体资源的存储与分发流程。截至最新统计,该厂商已收录 40 条 CVE,历史漏洞多集中于未授权访问、SQL 注入及跨站脚本攻击,部分版本存在远程代码执行风险。其安全架构强调权限隔离与输入验证,但早期版本因配置不当频发越权问题。建议用户及时更新补丁,并严格遵循最小权限原则部署,以降低潜在攻击面。

CVE IDタイトルCVSS深刻度公開日
CVE-2025-66143 WordPress Crumber plugin <= 1.0.10 - Broken Access Control vulnerability — CrumberCWE-862 5.4 Medium2026-01-22
CVE-2025-66142 WordPress Comparimager for Elementor plugin <= 1.0.1 - Broken Access Control vulnerability — Comparimager for ElementorCWE-862 5.4 Medium2026-01-22
CVE-2025-66141 WordPress Scroller plugin <= 2.0.2 - Broken Access Control vulnerability — ScrollerCWE-862 5.4 Medium2026-01-22
CVE-2025-66140 WordPress Uper for Elementor plugin <= 1.0.5 - Broken Access Control vulnerability — Uper for ElementorCWE-862 5.4 Medium2026-01-22
CVE-2025-66138 WordPress Motionger for Elementor plugin <= 2.0.4 - Broken Access Control vulnerability — Motionger for ElementorCWE-862 5.4 Medium2026-01-22
CVE-2025-66136 WordPress Carter for Elementor plugin <= 1.0.2 - Broken Access Control vulnerability — Carter for ElementorCWE-862 5.4 Medium2026-01-22
CVE-2025-66139 WordPress Audier For Elementor plugin <= 1.0.9 - Broken Access Control vulnerability — Audier For ElementorCWE-862 5.4 Medium2026-01-22
CVE-2025-66137 WordPress Searcher for Elementor plugin <= 1.0.3 - Broken Access Control vulnerability — Searcher for ElementorCWE-862 5.4 Medium2026-01-22
CVE-2025-66135 WordPress Imager for Elementor plugin <= 2.0.4 - Broken Access Control vulnerability — Imager for ElementorCWE-862 5.4 Medium2026-01-22
CVE-2025-66144 WordPress Worker for Elementor plugin <= 1.0.10 - Broken Access Control vulnerability — Worker for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66145 WordPress Worker for WPBakery plugin <= 1.1.1 - Broken Access Control vulnerability — Worker for WPBakeryCWE-862 5.4 Medium2025-12-31
CVE-2025-66146 WordPress Logger for Elementor plugin <= 1.0.9 - Broken Access Control vulnerability — Logger for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66148 WordPress Conformer for Elementor plugin <= 1.0.7 - Broken Access Control vulnerability — Conformer for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66149 WordPress UnGrabber plugin <= 3.1.3 - Broken Access Control vulnerability — UnGrabberCWE-862 5.4 Medium2025-12-31
CVE-2025-66150 WordPress Appender plugin <= 1.1.1 - Broken Access Control vulnerability — AppenderCWE-862 5.4 Medium2025-12-31
CVE-2025-66151 WordPress Countdowner for Elementor plugin <= 1.0.4 - Broken Access Control vulnerability — Countdowner for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66152 WordPress Criptopayer for Elementor plugin <= 1.0.1 - Broken Access Control vulnerability — Criptopayer for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66153 WordPress Headinger for Elementor plugin <= 1.1.4 - Broken Access Control vulnerability — Headinger for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66154 WordPress Couponer for Elementor plugin <= 1.1.7 - Broken Access Control vulnerability — Couponer for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66155 WordPress Questionar for Elementor plugin <= 1.1.7 - Broken Access Control vulnerability — Questionar for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66156 WordPress Watcher for Elementor plugin <= 1.0.9 - Broken Access Control vulnerability — Watcher for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66157 WordPress Sliper for Elementor plugin <= 1.0.10 - Broken Access Control vulnerability — Sliper for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66158 WordPress Gmaper for Elementor plugin <= 1.0.9 - Broken Access Control vulnerability — Gmaper for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66159 WordPress Walker for Elementor plugin <= 1.1.6 - Broken Access Control vulnerability — Walker for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-66160 WordPress Select Graphist for Elementor Graphist for Elementor plugin <= 1.2.10 - Broken Access Control vulnerability — Select Graphist for Elementor Graphist for ElementorCWE-862 5.4 Medium2025-12-31
CVE-2025-68088 WordPress Huger for Elementor plugin <= 1.1.5 - Broken Access Control vulnerability — Huger for ElementorCWE-862 5.4 Medium2025-12-16
CVE-2025-68085 WordPress Buttoner for Elementor plugin <= 1.0.6 - Settings Change vulnerability — Buttoner for ElementorCWE-862 5.4 Medium2025-12-16
CVE-2025-68087 WordPress Modalier for Elementor plugin <= 1.0.6 - Broken Access Control vulnerability — Modalier for ElementorCWE-862 5.4 Medium2025-12-16
CVE-2025-68086 WordPress Reformer for Elementor plugin <= 1.0.6 - Broken Access Control vulnerability — Reformer for ElementorCWE-862 5.4 Medium2025-12-16
CVE-2025-66166 WordPress Lottier for Elementor plugin <= 1.0.9 - Broken Access Control vulnerability — Lottier for ElementorCWE-862 5.4 Medium2025-12-16

本页汇总了 merkulove 厂商截至目前公开的全部 40 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。