
atec System Info Security & Risk Analysis
wordpress.org/plugins/atec-system-infoatec System Info (Operating system, server, memory, PHP and database details)
Is atec System Info Safe to Use in 2026?
Generally Safe
Score 100/100atec System Info has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "atec-system-info" plugin v1.2.31 presents a mixed security posture. While a significant portion of its code adheres to good security practices, such as 99% output escaping and appropriate capability checks, there are notable areas of concern. The presence of the dangerous `exec` function, even if its usage is not immediately clear as vulnerable, warrants careful scrutiny as it can be exploited for remote code execution if not handled with extreme care.
More critically, the plugin exposes one AJAX handler without any authentication checks. This is a significant security weakness as it allows any user, even unauthenticated ones, to trigger this handler, potentially leading to unauthorized actions or information disclosure. The lack of taint analysis data could be due to the plugin's limited scope or specific coding patterns, but it doesn't negate the identified vulnerabilities.
The plugin's complete absence of recorded vulnerabilities in its history is a positive sign, suggesting a history of responsible development. However, this should not breed complacency, especially given the identified security flaws. The plugin's strengths lie in its robust output escaping and capability checks, but the unprotected AJAX endpoint and the presence of `exec` are critical weaknesses that significantly elevate its risk profile.
Key Concerns
- Unprotected AJAX handler
- Use of dangerous function: exec
- SQL queries without prepared statements (50%)
atec System Info Security Vulnerabilities
atec System Info Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
atec System Info Attack Surface
AJAX Handlers 1
WordPress Hooks 6
Maintenance & Trust
atec System Info Maintenance & Trust
Maintenance Signals
Community Trust
atec System Info Alternatives
No alternatives data available yet.
atec System Info Developer Profile
16 plugins · 3K total installs
How We Detect atec System Info
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/atec-system-info/assets/css/atec-system-info.css/wp-content/plugins/atec-system-info/assets/js/atec-system-info.js/wp-content/plugins/atec-system-info/assets/js/atec-system-info.jsatec-system-info/assets/css/atec-system-info.css?ver=atec-system-info/assets/js/atec-system-info.js?ver=HTML / DOM Fingerprints
atec-plugin-system-infodata-atec-system-info-urlatec_system_info_ajax_object[atec_system_info]