Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

unknown — Vulnerabilities & Security Advisories 4143

Browse all 4143 CVE security advisories affecting unknown. AI-powered Chinese analysis, POCs, and references for each vulnerability.

“Unknown” represents a broad category of unclassified or poorly documented software components, currently associated with 4,141 recorded CVEs. These vulnerabilities typically stem from legacy architectures or proprietary systems lacking transparent security audits. Common flaw classes include remote code execution, cross-site scripting, and privilege escalation, often resulting from inadequate input validation or hardcoded credentials. Due to the opaque nature of these products, detailed security characteristics are frequently absent, making risk assessment difficult for organizations. Major incidents involving “Unknown” entities often highlight systemic failures in patch management and vendor accountability. The sheer volume of vulnerabilities suggests widespread reliance on unsupported or obscure technologies within critical infrastructure. Addressing these risks requires rigorous inventory management and proactive threat hunting, as standard mitigation strategies may not apply to such undefined software ecosystems.

CVE IDTitleCVSSSeverityPublished
CVE-2024-13608 Track Logins <= 1.0 - Admin+ SQL Injection — Track Logins 7.2 -2025-02-17
CVE-2024-13603 Wise Forms <= 1.2.0 - Unauthenticated Stored XSS — Wise Forms 6.1 -2025-02-17
CVE-2024-13306 WP Google Map < 1.9.4 - Admin+ Stored XSS — Maps Plugin using Google Maps for WordPress 4.8 -2025-02-15
CVE-2024-13208 WP Google Map < 1.9.4 - Admin+ Stored XSS — Maps Plugin using Google Maps for WordPress 4.8 -2025-02-15
CVE-2024-7052 Forminator < 1.38.3 - Admin+ Stored XSS — Forminator Forms 4.8 -2025-02-14
CVE-2024-13493 Sensly Online Presence <= 0.6 - Admin+ Stored XSS — Sensly Online Presence 4.8 -2025-02-14
CVE-2025-0692 Simple Video Management System <= 1.0.4 - Admin+ Stored XSS — Simple Video Management System 4.8 -2025-02-13
CVE-2024-13125 Everest Forms < 3.0.8.1 - Admin+ Stored XSS — Everest Forms 4.8 -2025-02-13
CVE-2024-13120 ProfilePress < 4.15.20 - Admin+ Stored XSS — Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content 4.8 -2025-02-13
CVE-2024-13121 Paid Membership Plugin < 4.15.20 - Admin+ Stored XSS — Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content 4.8 -2025-02-13
CVE-2024-13119 ProfilePress < 4.15.20 - Admin+ Stored XSS — Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content 4.8 -2025-02-13
CVE-2024-12586 Chalet Montagne Com Tools <= 2.7.8 - Reflected XSS — Chalet-Montagne.com Tools 6.1 -2025-02-13
CVE-2024-13544 Zarinpal Paid Downloads <= 2.3 - Admin+ Arbitrary File Upload — Zarinpal Paid Download 7.2 -2025-02-11
CVE-2024-13570 Stray Random Quotes <= 1.9.9 - Reflected XSS — Stray Random Quotes 6.1 -2025-02-11
CVE-2024-13543 Zarinpal Paid Downloads <= 2.3 - Reflected XSS — Zarinpal Paid Download 6.1 -2025-02-11
CVE-2024-13492 Guten Free Options <= 0.9.5 - Reflected XSS — Guten Free Options 6.1 -2025-02-07
CVE-2024-13352 Legull <= 1.2.2 - Reflected XSS — Legull 6.1 -2025-02-07
CVE-2025-0522 LikeBot – Decentralized like-system <= 0.85 - Admin+ Stored XSS via CSRF — LikeBot 6.1 -2025-02-06
CVE-2025-0466 Sensei LMS < 4.24.4 - Unauthenticated sensei_email/sensei_message Disclosure — Sensei LMS 5.3 -2025-02-04
CVE-2024-13332 TransFinanz <= 1.0.0 - Reflected XSS — TransFinanz 6.1 -2025-02-04
CVE-2025-0368 Banner Garden Plugin for WordPress <= 0.1.3 - Reflected XSS — Banner Garden Plugin for WordPress 6.1 -2025-02-04
CVE-2024-13330 Justrows Free <= 0.2 - Reflected XSS — JustRows free 6.1 -2025-02-04
CVE-2024-13331 WP Dream Carousel <= 1.0.1b - Reflected XSS — WP Dream Carousel 6.1 -2025-02-04
CVE-2024-13329 Solidres <= 0.9.4 - Reflected XSS — Solidres 6.1 -2025-02-04
CVE-2024-13327 Musicbox <= 2.0.3 - Reflected XSS — Musicbox 6.1 -2025-02-04
CVE-2024-13328 Giga Messenger Bots <= 2.3.1 - Reflected XSS — Giga Messenger 6.1 -2025-02-04
CVE-2024-13326 iBuildApp <= 0.2.0 - Reflected XSS — iBuildApp 6.1 -2025-02-04
CVE-2024-13115 WP Projects Portfolio with Client Testimonials <= 3.0 - Stored XSS via CSRF — WP Projects Portfolio with Client Testimonials 6.1 -2025-02-04
CVE-2024-13325 Glossy <= 2.3.5 - Reflected XSS — Glossy 6.1 -2025-02-04
CVE-2024-13114 WP Projects Portfolio with Client Testimonials <= 3.0 - Reflected XSS — WP Projects Portfolio with Client Testimonials 6.1 -2025-02-04

This page lists every published CVE security advisory associated with unknown. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.