Back to Database
Status published
High
CVE-2015-9331
The wp-all-import plugin before 3.2.4 for WordPress has no prevention...
Vulnerability Description
The wp-all-import plugin before 3.2.4 for WordPress has no prevention of unauthenticated requests to adminInit.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2015-9331
Credits & Attribution
No credits recorded in the NVD database.
More from soflyy
View All →CVE-2018-20978
The wp-all-import plugin before 3.4.7 for WordPress has XSS....
Medium
6.1
CVE-2018-16259
There is an XSS vulnerability in WP All Import plugin...
Medium
6.1
CVE-2018-16258
There is an XSS vulnerability in WP All Import plugin...
Medium
6.1
CVE-2018-16257
There are multiple XSS vulnerabilities in WP All Import plugin...
Medium
6.1
CVE-2018-16256
There is an XSS vulnerability in WP All Import plugin...
Medium
6.1
Affected Vendor
soflyy
View all reports →Affected Software
wp all import
Vulnerable Versions:
0
Timeline
Official Publish:
August 20th, 2019
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.