Skip to content
Noroxi

comsenz records

9 published records for vendor comsenz.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

9 records
  • An issue was discovered in DuomiCMS 3.0.

    CriticalCVSS 9.8No exploitEPSS 2%

    comsenz · duomicmsOct 9, 2018

  • An issue was discovered in DuomiCMS 3.0.

    CriticalCVSS 9.8No exploitEPSS 1%

    comsenz · duomicmsOct 9, 2018

  • The database backup feature in upload/source/admincp/admincp_db.php in Discuz! 2.5 and 3.4 allows remote attackers to execute arbitrary PHP

    HighCVSS 8.8Proof of conceptEPSS 10%

    comsenz · discuz\!May 22, 2019

  • Discuz! DiscuzX 3.4, when WeChat login is enabled, allows remote attackers to bypass authentication by leveraging a non-empty #wechat#common

    HighCVSS 8.1No exploitEPSS 1%

    comsenz · discuzxDec 24, 2018

  • Discuz! DiscuzX 3.4, when WeChat login is enabled, allows remote attackers to bypass a "disabled registration" setting by adding a non-exist

    HighCVSS 8.1No exploitEPSS 1%

    comsenz · discuzxDec 24, 2018

  • CVE-2008-3554
    30Monitor

    SQL injection vulnerability in index.php in Discuz! 6.0.1 allows remote attackers to execute arbitrary SQL commands via the searchid paramet

    HighCVSS 7.5Proof of conceptEPSS 1%

    comsenz · discuzAug 8, 2008

  • CVE-2009-3185
    30Monitor

    SQL injection vulnerability in plugin.php in the Crazy Star plugin 2.0 for Discuz! allows remote authenticated users to execute arbitrary SQ

    HighCVSS 7.5Proof of conceptEPSS 1%

    comsenz · crazy star pluginSep 15, 2009

  • CVE-2008-6958
    28Monitor

    wap/index.php in Crossday Discuz! Board 6.x and 7.x allows remote authenticated users to execute arbitrary PHP code via the creditsformula p

    MediumCVSS 6.5Proof of conceptEPSS 6%

    comsenz · crossday discuz\! boardAug 12, 2009

  • Discuz! DiscuzX 3.4, when WeChat login is enabled, allows remote attackers to delete the common_member_wechatmp data structure via an ac=unb

    MediumCVSS 5.9No exploitEPSS 1%

    comsenz · discuzxDec 24, 2018