Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

cyberlord92 — Vulnerabilities & Security Advisories 43

Browse all 43 CVE security advisories affecting cyberlord92. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Operating primarily as an independent security researcher, cyberlord92 has established a significant footprint in the vulnerability disclosure landscape with thirty-six Common Vulnerabilities and Exposures (CVEs) currently on record. The majority of these findings target web applications, with Remote Code Execution (RCE) and Cross-Site Scripting (XSS) representing the most frequently exploited vulnerability classes. Privilege escalation flaws also appear with regularity, indicating a focus on gaining elevated access within compromised environments. Notable incidents include critical disclosures affecting major enterprise software platforms, which prompted rapid vendor patches and highlighted systemic architectural weaknesses. The profile suggests a methodical approach to penetration testing, prioritizing high-impact bugs over low-severity issues. This consistent output demonstrates a specialized expertise in identifying complex logic flaws and injection points, contributing substantially to the broader cybersecurity community’s understanding of application security risks.

CVE ID Title CVSS Severity Published
CVE-2024-9862 Miniorange OTP Verification with Firebase <= 3.6.0 - Unauthenticated Arbitrary User Password Change — Miniorange OTP Verification with Firebase CWE-639 9.8 Critical 2024-10-17
CVE-2024-9861 Miniorange OTP Verification with Firebase <= 3.6.0 - Authentication Bypass — Miniorange OTP Verification with Firebase CWE-288 8.1 High 2024-10-17
CVE-2022-4539 Web Application Firewall <= 2.1.2 - IP Address Spoofing to Protection Mechanism Bypass — Web Application Firewall – website security CWE-348 5.3 Medium 2024-08-31
CVE-2024-0681 Page Restriction WordPress (WP) – Protect WP Pages/Post <= 1.3.4 - Protection Mechanism Bypass — Page and Post Restriction CWE-693 5.3 Medium 2024-03-13
CVE-2024-2172 Malware Scanner <= 4.7.2 and Web Application Firewall <= 2.1.1 - Unauthenticated Privilege Escalation — Web Application Firewall – website security CWE-304 9.8 Critical 2024-03-13
CVE-2022-4943 miniOrange's Google Authenticator <= 5.6.5 - Missing Authorization to Plugin Settings Change — miniOrange 2FA – Two-Factor Authentication for WordPress (SMS, Email & Google Authenticator) CWE-862 7.5 High 2023-10-20
CVE-2023-4505 Staff / Employee Business Directory for Active Directory <= 1.2.3 - Authenticated (Admin+) LDAP Passback — Staff/Employee Business Directory for Active Directory CWE-306 2.2 Low 2023-09-26
CVE-2023-4506 Active Directory Integration / LDAP Integration <= 4.1.10 - LDAP Passback — Active Directory Integration / LDAP Integration CWE-306 2.2 Low 2023-09-26
CVE-2023-3249 Web3 – Crypto wallet Login & NFT token gating <= 2.6.0 - Authentication Bypass — Web3 – Crypto wallet Login & NFT token gating CWE-288 9.8 Critical 2023-06-30
CVE-2023-3447 Active Directory Integration / LDAP Integration <= 4.1.5 - Authenticated (Subscriber+) LDAP Injection — Active Directory Integration / LDAP Integration CWE-90 7.6 High 2023-06-29
CVE-2023-2982 WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass — miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) CWE-288 9.8 Critical 2023-06-29
CVE-2023-2599 Active Directory Integration / LDAP Integration <= 4.1.4 - Cross-Site Request Forgery to SQL Injection — Active Directory Integration / LDAP Integration CWE-352 3.1 Low 2023-06-09
CVE-2023-2484 Active Directory Integration / LDAP Integration <= 4.1.4 - Authenticated (Administrator+) SQL Injection — Active Directory Integration / LDAP Integration CWE-89 7.2 High 2023-06-09

This page lists every published CVE security advisory associated with cyberlord92. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.