VendorsRadykalfancy_product_designerall versions
Vulnerabilities

Radykal Fancy Product Designer

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2021-24370
Fancy Product Designer < 4.6.9 - Unauthenticated Arbitrary File Upload and RCE
Published 2021-06-21 · Modified
9.8EPSS 0.474
CVE-2021-4334
Fancy Product Designer <= 4.6.9 - Insufficient Authorization to Arbitrary Options Update via fpd_update_options
Published 2023-10-20 · Modified
8.8EPSS 0.007
CVE-2021-4096
Fancy Product Designer <= 4.7.5 - Cross-Site Request Forgery to Arbitrary File Upload
Published 2022-04-19 · Modified
8.8EPSS 0.006
CVE-2021-4134
Fancy Product Designer <= 4.7.4 Admin+ SQL Injection
Published 2022-02-16 · Modified
7.2EPSS 0.014
CVE-2024-0365
Fancy Product Designer < 6.1.5 - Admin+ SQL Injection
Published 2024-03-18 · Analyzed
6.5EPSS 0.006
CVE-2024-0905
Fancy Product Designer < 6.1.8 - Reflected Cross Site Scripting
Published 2024-04-26 · Analyzed
6.3EPSS 0.005
CVE-2021-4335
Fancy Product Designer <= 4.6.9 - Insufficient Authorization on Mulitple AJAX Actions
Published 2023-10-20 · Modified
6.3EPSS 0.004
CVE-2024-0904
Fancy Product Designer < 6.1.81 - Admin+ Cross Site Scripting
Published 2024-05-06 · Analyzed
5.9EPSS 0.006
CVE-2024-0902
Fancy Product Designer < 6.1.81 - Admin+ Cross Site Scripting via Product Title
Published 2024-04-15 · Analyzed
4.8EPSS 0.004