atec System Info Security & Risk Analysis

wordpress.org/plugins/atec-system-info

atec System Info (Operating system, server, memory, PHP and database details)

200 active installs v1.2.31 PHP 7.4+ WP 4.9+ Updated Dec 18, 2025
highly-detailed-system-information-system-health-statusmemory-db-and-comprehensive-server-and-php-configuration-detailsserver-info-os
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is atec System Info Safe to Use in 2026?

Generally Safe

Score 100/100

atec System Info has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "atec-system-info" plugin v1.2.31 presents a mixed security posture. While a significant portion of its code adheres to good security practices, such as 99% output escaping and appropriate capability checks, there are notable areas of concern. The presence of the dangerous `exec` function, even if its usage is not immediately clear as vulnerable, warrants careful scrutiny as it can be exploited for remote code execution if not handled with extreme care.

More critically, the plugin exposes one AJAX handler without any authentication checks. This is a significant security weakness as it allows any user, even unauthenticated ones, to trigger this handler, potentially leading to unauthorized actions or information disclosure. The lack of taint analysis data could be due to the plugin's limited scope or specific coding patterns, but it doesn't negate the identified vulnerabilities.

The plugin's complete absence of recorded vulnerabilities in its history is a positive sign, suggesting a history of responsible development. However, this should not breed complacency, especially given the identified security flaws. The plugin's strengths lie in its robust output escaping and capability checks, but the unprotected AJAX endpoint and the presence of `exec` are critical weaknesses that significantly elevate its risk profile.

Key Concerns

  • Unprotected AJAX handler
  • Use of dangerous function: exec
  • SQL queries without prepared statements (50%)
Vulnerabilities
None known

atec System Info Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

atec System Info Code Analysis

Dangerous Functions
2
Raw SQL Queries
7
7 prepared
Unescaped Output
4
326 escaped
Nonce Checks
2
Capability Checks
5
File Operations
14
External Requests
3
Bundled Libraries
0

Dangerous Functions Found

exec@exec($cmd, $output, $retval);includes\atec-server-info.php:159
exec@exec($cmd, $output, $retval);includes\atec-server-info.php:165

SQL Query Safety

50% prepared14 total queries

Output Escaping

99% escaped330 total outputs
Attack Surface
1 unprotected

atec System Info Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

authwp_ajax_atec_admin_notice_dismissincludes\ATEC\LOADER.php:109
WordPress Hooks 6
actionadmin_menuatec-system-info.php:28
actionadmin_enqueue_scriptsincludes\ATEC\INIT.php:564
actionadmin_noticesincludes\ATEC\INIT.php:647
actionadmin_footerincludes\ATEC\INIT.php:688
actionadmin_noticesincludes\ATEC\INIT.php:720
actionadmin_bar_menuincludes\ATEC\MEMORY.php:28
Maintenance & Trust

atec System Info Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 18, 2025
PHP min version7.4
Downloads11K

Community Trust

Rating100/100
Number of ratings2
Active installs200
Alternatives

atec System Info Alternatives

No alternatives data available yet.

Developer Profile

atec System Info Developer Profile

docjojo

16 plugins · 3K total installs

99
trust score
Avg Security Score
99/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect atec System Info

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/atec-system-info/assets/css/atec-system-info.css/wp-content/plugins/atec-system-info/assets/js/atec-system-info.js
Script Paths
/wp-content/plugins/atec-system-info/assets/js/atec-system-info.js
Version Parameters
atec-system-info/assets/css/atec-system-info.css?ver=atec-system-info/assets/js/atec-system-info.js?ver=

HTML / DOM Fingerprints

CSS Classes
atec-plugin-system-info
Data Attributes
data-atec-system-info-url
JS Globals
atec_system_info_ajax_object
Shortcode Output
[atec_system_info]
FAQ

Frequently Asked Questions about atec System Info