Extension WordPress
Vulnérabilités WP Business Intelligence Lite
Cette page rassemble les failles publiées pour WP Business Intelligence Lite, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de WP Business Intelligence Lite
4 fiches
WP Business Intelligence Lite <= 3.2.0 – Missing Authorization
The WP Business Intelligence Lite plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 3.2.0. This makes it possible for authenticated attackers, with subscriber-level…
*-3.2.0
Non indiqué
05/05/2026
WP Business Intelligence Lite <= 3.2.0 – Authenticated (Subscriber+) Missing Authorization to Privilege Escalation via Arbitrary SQL Modification
The WP Business Intelligence Lite plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.2.0. This is due to the plugin not properly verifying that a user is authorized to perform an…
*-3.2.0
Non indiqué
04/05/2026
WP Business Intelligence Lite <= 1.6.2 – SQL Injection
The wp-business-intelligence-lite plugin before 1.6.3 for WordPress has SQL injection via the 't' parameter in the 'view.php' file.
*-1.6.2
1.6.3
01/04/2015
WP Business intelligence lite < 1.3 – Arbitrary File Upload
The WP Business intelligence lite plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'ofc_upload_image.php' files in versions before 1.3. This makes it possible for unauthenticated attackers to upload arbitrary…
[*, 1.3)
1.3
28/03/2014
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.