Andreas Krüger

Andreas Krüger is a security researcher credited with 11 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #408 of 3,515 contributors. Their disclosures were published between 2022 and 2023. The most productive year was 2022, with 10 findings.

Their research concentrates on Cross-Site Scripting, which accounts for 4 of their findings (36%). Other recurring categories include Improper Input Validation, Path Traversal. The average CVSS score across these disclosures is 6.2, peaking at 8.1. Severity breakdown: 0 critical and 5 high.

The most affected software includes Simple:Press Forum (5), Appointment Hour Booking (3), Quiz and Survey Master (QSM) (2), across 4 distinct plugins, themes and core versions in total.

All 11 disclosed issues have since received a vendor fix. The most severe finding, "Simple:Press <= 6.8 - Authenticated (Subscriber+) Path Traversal to Arbitrary File Deletion", scores 8.1 out of 10.

20222023
Critical
High
Medium
Low
Global Rank

#408

of 3,515 researchers

Vulns

11

Critical0
High5
Medium5
Low1
Affected Assets

4

4plugins
Avg CVSS

6.2

Average score of vulnerabilities

Researcher Submissions

11 records
2023-06-28 00:00CVE-2023-3447
7.6
High
Luca GreebYes
2022-11-29 00:00CVE-2022-4031
3.8
Low
Luca GreebYes
2022-11-29 00:00CVE-2022-4030
8.1
High
Luca GreebYes
2022-11-29 00:00CVE-2022-4027
7.2
High
Luca GreebYes
2022-11-29 00:00CVE-2022-4029
4.7
Medium
Luca GreebYes
2022-11-29 00:00CVE-2022-4035
7.2
High
Luca GreebYes
2022-11-29 00:00CVE-2022-4034
5.8
Medium
Luca GreebYes
2022-11-29 00:00CVE-2022-4032
7.2
High
Luca GreebYes
2022-11-29 00:00CVE-2022-4028
6.4
Medium
Luca GreebYes
2022-11-29 00:00CVE-2022-4036
5.3
Medium
Luca GreebYes
Showing 1–10 of 11 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C