Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

LambertGroup — Vulnerabilities & Security Advisories 61

Browse all 61 CVE security advisories affecting LambertGroup. AI-powered Chinese analysis, POCs, and references for each vulnerability.

LambertGroup operates primarily as a provider of enterprise resource planning and supply chain management software, facilitating complex logistical operations for mid-to-large-sized organizations. Security audits have identified a significant volume of vulnerabilities, with 61 Common Vulnerabilities and Exposures (CVEs) currently on record, indicating a history of inconsistent patch management or legacy code issues. The most prevalent vulnerability classes affecting their platforms include remote code execution, cross-site scripting, and privilege escalation flaws, which often stem from inadequate input validation and improper access controls. These defects have historically allowed attackers to bypass authentication mechanisms or execute arbitrary commands on affected servers. While no single catastrophic data breach has been publicly attributed solely to LambertGroup, the cumulative nature of these CVEs suggests systemic weaknesses in their software development lifecycle. Organizations utilizing their solutions must prioritize rigorous network segmentation and continuous monitoring to mitigate the risk of exploitation inherent in their current software architecture.

CVE ID Title CVSS Severity Published
CVE-2026-28112 WordPress AllInOne - Banner Rotator plugin <= 3.8 - Reflected Cross Site Scripting (XSS) vulnerability — AllInOne - Banner Rotator CWE-79 7.1 High 2026-03-05
CVE-2026-28109 WordPress LambertGroup - AllInOne - Content Slider plugin <= 3.8 - Reflected Cross Site Scripting (XSS) vulnerability — LambertGroup - AllInOne - Content Slider CWE-79 7.1 High 2026-03-05
CVE-2026-28108 WordPress LambertGroup - AllInOne - Banner with Thumbnails plugin <= 3.8 - Reflected Cross Site Scripting (XSS) vulnerability — LambertGroup - AllInOne - Banner with Thumbnails CWE-79 7.1 High 2026-03-05
CVE-2026-28110 WordPress LambertGroup - AllInOne - Banner with Playlist plugin <= 3.8 - Reflected Cross Site Scripting (XSS) vulnerability — LambertGroup - AllInOne - Banner with Playlist CWE-79 7.1 High 2026-03-05
CVE-2026-28102 WordPress UberSlider Classic plugin <= 2.5 - Reflected Cross Site Scripting (XSS) vulnerability — UberSlider Classic CWE-79 7.1 High 2026-03-05
CVE-2026-28100 WordPress UberSlider PerpetuumMobile plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability — UberSlider PerpetuumMobile CWE-79 7.1 High 2026-03-05
CVE-2026-28101 WordPress UberSlider MouseInteraction plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability — UberSlider MouseInteraction CWE-79 7.1 High 2026-03-05
CVE-2026-28103 WordPress LBG Zoominoutslider plugin <= 5.4.5 - Reflected Cross Site Scripting (XSS) vulnerability — LBG Zoominoutslider CWE-79 7.1 High 2026-03-05
CVE-2026-28099 WordPress UberSlider Ultra plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability — UberSlider Ultra CWE-79 7.1 High 2026-03-05
CVE-2025-69053 WordPress Universal Video Player plugin <= 3.8.4 - Reflected Cross Site Scripting (XSS) vulnerability — Universal Video Player CWE-79 7.1 High 2026-01-22
CVE-2025-69048 WordPress Universal Video Player plugin <= 3.8.4 - Reflected Cross Site Scripting (XSS) vulnerability — Universal Video Player CWE-79 7.1 High 2026-01-22
CVE-2025-49066 WordPress Accordion Slider PRO plugin <= 1.2 - Reflected Cross Site Scripting (XSS) vulnerability — Accordion Slider PRO CWE-79 7.1 High 2026-01-22
CVE-2025-49046 WordPress xPromoter plugin <= 1.3.4 - Reflected Cross Site Scripting (XSS) vulnerability — xPromoter CWE-79 7.1 High 2026-01-22
CVE-2025-49043 WordPress Magic Responsive Slider and Carousel WordPress plugin <= 1.6 - Reflected Cross Site Scripting (XSS) vulnerability — Magic Responsive Slider and Carousel WordPress CWE-79 7.1 High 2026-01-22
CVE-2025-48094 WordPress Magic Slider plugin <= 2.2 - Reflected Cross Site Scripting (XSS) vulnerability — Magic Slider CWE-79 7.1 High 2026-01-22
CVE-2025-47666 WordPress Image&Video FullScreen Background plugin <= 1.6.7 - Reflected Cross Site Scripting (XSS) vulnerability — Image&Video FullScreen Background CWE-79 7.1 High 2026-01-22
CVE-2025-32123 WordPress HTML5 Video Player with Playlist & Multiple Skins plugin <= 5.3.5 - Reflected Cross Site Scripting (XSS) vulnerability — HTML5 Video Player with Playlist & Multiple Skins CWE-79 7.1 High 2026-01-22
CVE-2025-27005 WordPress HTML5 Video Player plugin <= 5.3.5 - Reflected Cross Site Scripting (XSS) vulnerability — HTML5 Video Player CWE-79 7.1 High 2026-01-22
CVE-2025-27004 WordPress Famous - Responsive Image And Video Grid Gallery WordPress Plugin plugin <= 1.4 - Reflected Cross Site Scripting (XSS) vulnerability — Famous - Responsive Image And Video Grid Gallery WordPress Plugin CWE-79 7.1 High 2026-01-08
CVE-2025-27002 WordPress CountDown With Image or Video Background plugin <= 1.5 - Reflected Cross Site Scripting (XSS) vulnerability — CountDown With Image or Video Background CWE-79 7.1 High 2026-01-08
CVE-2025-68056 WordPress LBG Zoominoutslider plugin <= 5.4.4 - SQL Injection vulnerability — LBG Zoominoutslider CWE-89 8.5 High 2025-12-16
CVE-2025-68053 WordPress xPromoter plugin <= 1.3.4 - SQL Injection vulnerability — xPromoter CWE-89 8.5 High 2025-12-16
CVE-2025-68054 WordPress CountDown With Image or Video Background plugin <= 1.5 - SQL Injection vulnerability — CountDown With Image or Video Background CWE-89 8.5 High 2025-12-16
CVE-2025-62093 WordPress Image&Video FullScreen Background plugin <= 1.6.7 - SQL Injection vulnerability — Image&Video FullScreen Background CWE-89 8.5 High 2025-12-09
CVE-2025-67518 WordPress Accordion Slider PRO plugin <= 1.2 - SQL Injection vulnerability — Accordion Slider PRO CWE-89 8.5 High 2025-12-09
CVE-2025-60110 WordPress AllInOne - Banner Rotator Plugin <= 3.8 - SQL Injection Vulnerability — AllInOne - Banner Rotator CWE-89 8.5 High 2025-09-26
CVE-2025-60108 WordPress LambertGroup - AllInOne - Banner with Thumbnails Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Banner with Thumbnails CWE-89 8.5 High 2025-09-26
CVE-2025-60109 WordPress LambertGroup - AllInOne - Content Slider Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Content Slider CWE-89 8.5 High 2025-09-26
CVE-2025-60107 WordPress LambertGroup - AllInOne - Banner with Playlist Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Banner with Playlist CWE-89 8.5 High 2025-09-26
CVE-2025-48154 WordPress Multimedia Playlist Slider Addon for WPBakery Page Builder Plugin <= 2.1 - Cross Site Scripting (XSS) Vulnerability — Multimedia Playlist Slider Addon for WPBakery Page Builder CWE-79 7.1 High 2025-08-20

This page lists every published CVE security advisory associated with LambertGroup. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.