Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

reputeinfosystems — Vulnerabilities & Security Advisories 36

Browse all 36 CVE security advisories affecting reputeinfosystems. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Reputeinfosystems operates as a provider of enterprise software solutions, primarily focusing on identity and access management platforms. An analysis of its public vulnerability history reveals a concerning pattern of thirty-six recorded Common Vulnerabilities and Exposures (CVEs). These security flaws predominantly stem from inadequate input validation and improper access controls, resulting in frequent instances of Remote Code Execution (RCE) and Cross-Site Scripting (XSS). Additionally, several entries highlight critical privilege escalation risks, allowing unauthorized users to gain administrative rights within the system. While specific major public breaches are not widely documented in open sources, the high volume of RCE vulnerabilities suggests systemic weaknesses in the software’s security architecture. This track record indicates that Reputeinfosystems products have historically struggled with fundamental secure coding practices, posing significant risks to organizations relying on their identity management infrastructure without rigorous patching and network segmentation.

Found 7 results / 36Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2024-11726 Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPress <= 1.1.21 - Authenticated (Contributor+) SQL Injection — Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPressCWE-89 6.5 Medium2024-12-24
CVE-2024-10540 Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPress <= 1.1.16 - Authenticated (Subscriber+) SQL Injection — Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPressCWE-89 5.3 Medium2024-11-02
CVE-2024-7350 Appointment Booking Calendar Plugin and Online Scheduling Plugin – BookingPress 1.1.6 - 1.1.7 - Authentication Bypass to Account Takeover — Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPressCWE-288 9.8 Critical2024-08-08
CVE-2024-6467 BookingPress Appointment Booking <= 1.1.5 - Authenticated (Subscriber+) Arbitrary File Read to Arbitrary File Creation — Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPressCWE-73 8.8 High2024-07-17
CVE-2024-6660 BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin <= 1.1.5 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Options Update and Arbitrary File Upload — Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPressCWE-280 8.8 High2024-07-17
CVE-2024-3022 BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin <= 1.0.87 - Authenticated (Admin+) Arbitrary File Upload — Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPressCWE-434 7.2 High2024-04-04
CVE-2023-6219 BookingPress <= 1.0.76 - Authenticated (Administrator+) Arbitrary File Upload — Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPressCWE-434 7.2 High2023-11-28

This page lists every published CVE security advisory associated with reputeinfosystems. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.