bulbsecurity kayıtları
bulbsecurity üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
42Planlayın | CVE-2012-5878Kavram kanıtı | Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 through 0.1.4 allows remote attackers to execute arbitrary commands via shell metachabulbsecurity · smartphone pentest framework · CWE-78 | Kritik9,8 | — | %9,3 | 3 Oca 2020 |
35İzleyin | CVE-2012-5693İstismar yok | Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 allows remote attackers to execute arbitrary commands via shell metacharactersbulbsecurity · smartphone pentest framework · CWE-78 | Yüksek8,8 | — | %1,7 | 3 Oca 2020 |
27İzleyin | CVE-2012-5694İstismar yok | Multiple SQL injection vulnerabilities in Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 allow remote attackers to execute arbulbsecurity · smartphone pentest framework · CWE-89 | Orta6,8 | — | %1,3 | 20 Eki 2014 |
27İzleyin | CVE-2012-5695İstismar yok | Multiple cross-site request forgery (CSRF) vulnerabilities in Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 through 0.1.4 allow rembulbsecurity · smartphone pentest framework · CWE-352 | Orta6,8 | — | %0,7 | 20 Eki 2014 |
20İzleyin | CVE-2012-5696İstismar yok | Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 does not properly restrict access to frameworkgui/config, which allows remote bulbsecurity · smartphone pentest framework · CWE-264 | Orta5,0 | — | %1,3 | 20 Eki 2014 |
18İzleyin | CVE-2012-5697İstismar yok | The btinstall installation script in Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 uses weak permissions (777) for all filesbulbsecurity · smartphone pentest framework · CWE-264 | Orta4,6 | — | %0,4 | 20 Eki 2014 |
- CVE-2012-587842Planlayın
Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 through 0.1.4 allows remote attackers to execute arbitrary commands via shell metacha
KritikCVSS 9,8Kavram kanıtıEPSS %9bulbsecurity · smartphone pentest framework3 Oca 2020
- CVE-2012-569335İzleyin
Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 allows remote attackers to execute arbitrary commands via shell metacharacters
YüksekCVSS 8,8İstismar yokEPSS %2bulbsecurity · smartphone pentest framework3 Oca 2020
- CVE-2012-569427İzleyin
Multiple SQL injection vulnerabilities in Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 allow remote attackers to execute ar
OrtaCVSS 6,8İstismar yokEPSS %1bulbsecurity · smartphone pentest framework20 Eki 2014
- CVE-2012-569527İzleyin
Multiple cross-site request forgery (CSRF) vulnerabilities in Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 through 0.1.4 allow rem
OrtaCVSS 6,8İstismar yokEPSS %1bulbsecurity · smartphone pentest framework20 Eki 2014
- CVE-2012-569620İzleyin
Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 does not properly restrict access to frameworkgui/config, which allows remote
OrtaCVSS 5,0İstismar yokEPSS %1bulbsecurity · smartphone pentest framework20 Eki 2014
- CVE-2012-569718İzleyin
The btinstall installation script in Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 uses weak permissions (777) for all files
OrtaCVSS 4,6İstismar yokEPSS %0bulbsecurity · smartphone pentest framework20 Eki 2014