Ankitects kayıtları
ankitects üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %16,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-184 Incomplete List of Disallowed Inputs1
- CWE-23 Relative Path Traversal1
- CWE-427 Uncontrolled Search Path Element1
- CWE-80 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)1
- CWE-829 Inclusion of Functionality from Untrusted Control Sphere1
- CWE-830 Inclusion of Web Functionality from an Untrusted Source1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2024-32484İstismar yok | An reflected XSS vulnerability exists in the handling of invalid paths in the Flask server in Ankitects Anki 24.04.ankitects · anki · CWE-80 | Yüksek8,2 | — | %22,3 | 22 Tem 2024 |
31İzleyin | CVE-2025-62185İstismar yok | In Ankitects Anki before 25.02.5, a crafted shared deck can place a YouTube downloader executable in the media folder, and this is executed ankitects · anki · CWE-427 | Yüksek7,8 | — | %0,2 | 7 Eki 2025 |
31İzleyin | CVE-2025-62186İstismar yok | Ankitects Anki before 25.02.5 allows a crafted shared deck on Windows to execute arbitrary commands when playing audio because of URL schemeankitects · anki · CWE-829 | Yüksek7,8 | — | %0,1 | 7 Eki 2025 |
21İzleyin | CVE-2024-32152İstismar yok | A blocklist bypass vulnerability exists in the LaTeX functionality of Ankitects Anki 24.04.ankitects · anki · CWE-184 | Orta4,3 | — | %12,7 | 22 Tem 2024 |
21İzleyin | CVE-2025-43703İstismar yok | An issue was discovered in Ankitects Anki through 25.02.ankitects · anki · CWE-830 | Orta5,4 | — | %0,2 | 16 Nis 2025 |
13İzleyin | CVE-2025-62187İstismar yok | In Ankitects Anki before 25.02.6, crafted sound file references could cause files to be written to arbitrary locations on Windows and Linux ankitects · anki · CWE-23 | Düşük3,3 | — | %0,2 | 7 Eki 2025 |
- CVE-2024-3248439İzleyin
An reflected XSS vulnerability exists in the handling of invalid paths in the Flask server in Ankitects Anki 24.04.
YüksekCVSS 8,2İstismar yokEPSS %22ankitects · anki22 Tem 2024
- CVE-2025-6218531İzleyin
In Ankitects Anki before 25.02.5, a crafted shared deck can place a YouTube downloader executable in the media folder, and this is executed
YüksekCVSS 7,8İstismar yokEPSS %0ankitects · anki7 Eki 2025
- CVE-2025-6218631İzleyin
Ankitects Anki before 25.02.5 allows a crafted shared deck on Windows to execute arbitrary commands when playing audio because of URL scheme
YüksekCVSS 7,8İstismar yokEPSS %0ankitects · anki7 Eki 2025
- CVE-2024-3215221İzleyin
A blocklist bypass vulnerability exists in the LaTeX functionality of Ankitects Anki 24.04.
OrtaCVSS 4,3İstismar yokEPSS %13ankitects · anki22 Tem 2024
- CVE-2025-4370321İzleyin
An issue was discovered in Ankitects Anki through 25.02.
OrtaCVSS 5,4İstismar yokEPSS %0ankitects · anki16 Nis 2025
- CVE-2025-6218713İzleyin
In Ankitects Anki before 25.02.6, crafted sound file references could cause files to be written to arbitrary locations on Windows and Linux
DüşükCVSS 3,3İstismar yokEPSS %0ankitects · anki7 Eki 2025