
atec Dir Scan Security & Risk Analysis
wordpress.org/plugins/atec-dir-scanatec Dir Scan & Statistics (Number of files and size per directory)
Is atec Dir Scan Safe to Use in 2026?
Generally Safe
Score 100/100atec Dir Scan has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'atec-dir-scan' plugin v1.4.29 presents a mixed security profile. On the positive side, it demonstrates strong adherence to secure coding practices by utilizing prepared statements for all SQL queries and ensuring nearly all output is properly escaped. The absence of known vulnerabilities and common vulnerability types in its history is a significant strength, suggesting a relatively stable and well-maintained codebase. Furthermore, the plugin does not bundle any external libraries, mitigating risks associated with outdated dependencies.
However, a significant concern arises from the plugin's attack surface. It exposes one AJAX handler that lacks authentication checks. This unprotected entry point could potentially be exploited by unauthenticated users to interact with the plugin in unintended ways, leading to information disclosure or even more severe consequences if the AJAX handler performs sensitive operations. The static analysis did not reveal any critical or high-severity taint flows, which is reassuring, but the presence of an unprotected AJAX handler remains a critical oversight.
In conclusion, while 'atec-dir-scan' v1.4.29 excels in areas like SQL handling and output escaping, and has a clean vulnerability history, the single unprotected AJAX handler is a notable weakness. This single point of potential compromise significantly elevates the risk profile, requiring immediate attention and remediation.
Key Concerns
- AJAX handler without authentication
atec Dir Scan Security Vulnerabilities
atec Dir Scan Code Analysis
Output Escaping
atec Dir Scan Attack Surface
AJAX Handlers 1
WordPress Hooks 6
Maintenance & Trust
atec Dir Scan Maintenance & Trust
Maintenance Signals
Community Trust
atec Dir Scan Alternatives
No alternatives data available yet.
atec Dir Scan Developer Profile
16 plugins · 3K total installs
How We Detect atec Dir Scan
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/atec-dir-scan/includes/ATEC/js/menu-toggle.js/wp-content/plugins/atec-dir-scan/includes/ATEC/css/admin-menu.css/wp-content/plugins/atec-dir-scan/includes/ATEC/js/menu-toggle.jsatec-dir-scan/includes/ATEC/js/menu-toggle.js?ver=atec-dir-scan/includes/ATEC/css/admin-menu.css?ver=HTML / DOM Fingerprints
atec-admin-bar-rowdata-atec-slugdata-atec-actiondata-atec-navatec_wpds_ajax_cb/wp-json/atec-dir-scan/v1/scan