Known vulnerabilities in IgniteUp - Coming Soon and Maintenance Mode
Vendor:
Ceylon Systems
Software CPE:
cpe:2.3:a:ceylonsystems:igniteup:*:*:*:*:*:wordpress:*:*
Total vulnerabilities:
5
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU22632 - Improper Access Control |
CWE-284 | Medium | 3.4.1 | 11.11.2019 |
SB2019111104 |
||
| #VU22631 - Exposure of sensitive information to an unauthorized actor CVE-2019-17237 |
CWE-200 | Medium | 3.4.1 | 11.11.2019 |
SB2019111104 |
||
| #VU22630 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2019-17236 |
CWE-79 | Low | 3.4.1 | 11.11.2019 |
SB2019111104 |
||
| #VU22629 - Cross-Site Request Forgery (CSRF) CVE-2019-17235 |
CWE-352 | Low | 3.4.1 | 11.11.2019 |
SB2019111104 |
||
| #VU22628 - Improper Privilege Management CVE-2019-17234 |
CWE-269 | Medium | 3.4.1 | 11.11.2019 |
SB2019111104 |