Bolt kayıtları
bolt üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %33,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
42Planlayın | CVE-2022-36532Kavram kanıtı | Bolt CMS contains a vulnerability in version 5.1.12 and below that allows an authenticated user with the ROLE_EDITOR privileges to upload anbolt · bolt cms | Yüksek8,8 | — | %23,8 | 15 Eyl 2022 |
36İzleyin | CVE-2021-40219İstismar yok | Bolt CMS <= 4.2 is vulnerable to Remote Code Execution.bolt · bolt cms · CWE-94 | Yüksek8,8 | — | %3,4 | 11 Nis 2022 |
25İzleyin | CVE-2018-19933Kavram kanıtı | Bolt CMS <3.6.2 allows XSS via text input click preview button as demonstrated by the Title field of a Configured and New Entry.bolt · bolt cms · CWE-79 | Orta6,1 | — | %3,5 | 17 Ara 2018 |
- CVE-2022-3653242Planlayın
Bolt CMS contains a vulnerability in version 5.1.12 and below that allows an authenticated user with the ROLE_EDITOR privileges to upload an
YüksekCVSS 8,8Kavram kanıtıEPSS %24bolt · bolt cms15 Eyl 2022
- CVE-2021-4021936İzleyin
Bolt CMS <= 4.2 is vulnerable to Remote Code Execution.
YüksekCVSS 8,8İstismar yokEPSS %3bolt · bolt cms11 Nis 2022
- CVE-2018-1993325İzleyin
Bolt CMS <3.6.2 allows XSS via text input click preview button as demonstrated by the Title field of a Configured and New Entry.
OrtaCVSS 6,1Kavram kanıtıEPSS %3bolt · bolt cms17 Ara 2018