Dataprobe kayıtları
dataprobe üreticisine ait 20 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-798 Use of Hard-coded Credentials2
- CWE-287 Improper Authentication2
- CWE-288 Authentication Bypass Using an Alternate Path or Channel2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-256 Plaintext Storage of a Password1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
20 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
42Planlayın | CVE-2022-3184İstismar yok | Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the device’s existing firmware allows unauthenticated udataprobe · iboot-pdu4-n20 firmware · CWE-22 | Kritik9,8 | — | %11,6 | 21 Ara 2022 |
39İzleyin | CVE-2007-6760İstismar yok | Dataprobe iBootBar (with 2007-09-20 and possibly later beta firmware) allows remote attackers to bypass authentication, and conduct power-cydataprobe · ibootbar firmware · CWE-287 | Kritik9,8 | — | %1,6 | 7 Nis 2017 |
39İzleyin | CVE-2007-6759İstismar yok | Dataprobe iBootBar (with 2007-09-20 and possibly later released firmware) allows remote attackers to bypass authentication, and conduct powedataprobe · ibootbar firmware · CWE-287 | Kritik9,8 | — | %1,6 | 7 Nis 2017 |
39İzleyin | CVE-2022-3183İstismar yok | Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where a specific function does not sanitize the input providedataprobe · iboot-pdu4-n20 firmware · CWE-78 | Kritik9,8 | — | %1,6 | 21 Ara 2022 |
39İzleyin | CVE-2022-46658İstismar yok | The affected product is vulnerable to a stack-based buffer overflow which could lead to a denial of service or remote code execution.dataprobe · iboot-pdu4-n20 firmware · CWE-121 | Kritik9,8 | — | %1,2 | 22 May 2023 |
39İzleyin | CVE-2023-3259İstismar yok | The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to authentication bypass.dataprobe · iboot-pdu4a-c10 firmware · CWE-502 | Kritik9,8 | — | %1,0 | 14 Ağu 2023 |
39İzleyin | CVE-2022-46738İstismar yok | The affected product exposes multiple sensitive data fields of the affected product.dataprobe · iboot-pdu4-n20 firmware · CWE-1391 | Kritik9,8 | — | %0,6 | 22 May 2023 |
39İzleyin | CVE-2023-3264İstismar yok | The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier uses hard-coded credentials for all interactions with the internaldataprobe · iboot-pdu4a-c10 firmware · CWE-798 | Kritik9,8 | — | %0,5 | 14 Ağu 2023 |
35İzleyin | CVE-2023-3260İstismar yok | The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to command injection via the `user-name` URL parametdataprobe · iboot-pdu4a-c10 firmware · CWE-78 | Yüksek8,8 | — | %1,3 | 14 Ağu 2023 |
35İzleyin | CVE-2022-47311İstismar yok | A proprietary protocol for iBoot devices is used for control and keepalive commands.dataprobe · iboot-pdu4-n20 firmware · CWE-288 | Yüksek8,8 | — | %0,5 | 22 May 2023 |
32İzleyin | CVE-2022-47320İstismar yok | The iBoot device’s basic discovery protocol assists in initial device configuration.dataprobe · iboot-pdu4-n20 firmware · CWE-288 | Yüksek8,1 | — | %0,5 | 22 May 2023 |
30İzleyin | CVE-2023-3263İstismar yok | The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to authentication bypass in the REST API due to the dataprobe · iboot-pdu4a-c10 firmware · CWE-289 | Yüksek7,5 | — | %0,7 | 14 Ağu 2023 |
30İzleyin | CVE-2022-3186İstismar yok | Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the ddataprobe · iboot-pdu4-n20 firmware · CWE-284 | Yüksek7,5 | — | %0,6 | 21 Ara 2022 |
28İzleyin | CVE-2023-3261İstismar yok | The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier contains a buffer overflow vulnerability in the librta.so.0.0.0 lidataprobe · iboot-pdu4a-c10 firmware · CWE-119 | Yüksek7,2 | — | %0,8 | 14 Ağu 2023 |
26İzleyin | CVE-2023-3262İstismar yok | The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier uses hard-coded credentials for all interactions with the internaldataprobe · iboot-pdu4a-c10 firmware · CWE-798 | Orta6,7 | — | %0,3 | 14 Ağu 2023 |
26İzleyin | CVE-2022-4945İstismar yok | The Dataprobe cloud usernames and passwords are stored in plain text in a specific file.dataprobe · iboot-pdu4-n20 firmware · CWE-256 | Orta6,5 | — | %0,2 | 22 May 2023 |
21İzleyin | CVE-2022-3188İstismar yok | Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where unauthenticated users could open PHP index pages withoudataprobe · iboot-pdu4-n20 firmware · CWE-863 | Orta5,3 | — | %0,5 | 21 Ara 2022 |
21İzleyin | CVE-2022-3189İstismar yok | Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where a specially crafted PHP script could use parameters frodataprobe · iboot-pdu4-n20 firmware · CWE-918 | Orta5,3 | — | %0,5 | 21 Ara 2022 |
21İzleyin | CVE-2022-3185İstismar yok | Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product exposes sensitive data concerning dataprobe · iboot-pdu4-n20 firmware · CWE-200 | Orta5,3 | — | %0,5 | 21 Ara 2022 |
21İzleyin | CVE-2022-3187İstismar yok | Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where certain PHP pages only validate when a valid connectiondataprobe · iboot-pdu4-n20 firmware · CWE-285 | Orta5,3 | — | %0,5 | 21 Ara 2022 |
- CVE-2022-318442Planlayın
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the device’s existing firmware allows unauthenticated u
KritikCVSS 9,8İstismar yokEPSS %12dataprobe · iboot-pdu4-n20 firmware21 Ara 2022
- CVE-2007-676039İzleyin
Dataprobe iBootBar (with 2007-09-20 and possibly later beta firmware) allows remote attackers to bypass authentication, and conduct power-cy
KritikCVSS 9,8İstismar yokEPSS %2dataprobe · ibootbar firmware7 Nis 2017
- CVE-2007-675939İzleyin
Dataprobe iBootBar (with 2007-09-20 and possibly later released firmware) allows remote attackers to bypass authentication, and conduct powe
KritikCVSS 9,8İstismar yokEPSS %2dataprobe · ibootbar firmware7 Nis 2017
- CVE-2022-318339İzleyin
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where a specific function does not sanitize the input provide
KritikCVSS 9,8İstismar yokEPSS %2dataprobe · iboot-pdu4-n20 firmware21 Ara 2022
- CVE-2022-4665839İzleyin
The affected product is vulnerable to a stack-based buffer overflow which could lead to a denial of service or remote code execution.
KritikCVSS 9,8İstismar yokEPSS %1dataprobe · iboot-pdu4-n20 firmware22 May 2023
- CVE-2023-325939İzleyin
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to authentication bypass.
KritikCVSS 9,8İstismar yokEPSS %1dataprobe · iboot-pdu4a-c10 firmware14 Ağu 2023
- CVE-2022-4673839İzleyin
The affected product exposes multiple sensitive data fields of the affected product.
KritikCVSS 9,8İstismar yokEPSS %1dataprobe · iboot-pdu4-n20 firmware22 May 2023
- CVE-2023-326439İzleyin
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier uses hard-coded credentials for all interactions with the internal
KritikCVSS 9,8İstismar yokEPSS %0dataprobe · iboot-pdu4a-c10 firmware14 Ağu 2023
- CVE-2023-326035İzleyin
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to command injection via the `user-name` URL paramet
YüksekCVSS 8,8İstismar yokEPSS %1dataprobe · iboot-pdu4a-c10 firmware14 Ağu 2023
- CVE-2022-4731135İzleyin
A proprietary protocol for iBoot devices is used for control and keepalive commands.
YüksekCVSS 8,8İstismar yokEPSS %1dataprobe · iboot-pdu4-n20 firmware22 May 2023
- CVE-2022-4732032İzleyin
The iBoot device’s basic discovery protocol assists in initial device configuration.
YüksekCVSS 8,1İstismar yokEPSS %1dataprobe · iboot-pdu4-n20 firmware22 May 2023
- CVE-2023-326330İzleyin
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to authentication bypass in the REST API due to the
YüksekCVSS 7,5İstismar yokEPSS %1dataprobe · iboot-pdu4a-c10 firmware14 Ağu 2023
- CVE-2022-318630İzleyin
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the d
YüksekCVSS 7,5İstismar yokEPSS %1dataprobe · iboot-pdu4-n20 firmware21 Ara 2022
- CVE-2023-326128İzleyin
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier contains a buffer overflow vulnerability in the librta.so.0.0.0 li
YüksekCVSS 7,2İstismar yokEPSS %1dataprobe · iboot-pdu4a-c10 firmware14 Ağu 2023
- CVE-2023-326226İzleyin
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier uses hard-coded credentials for all interactions with the internal
OrtaCVSS 6,7İstismar yokEPSS %0dataprobe · iboot-pdu4a-c10 firmware14 Ağu 2023
- CVE-2022-494526İzleyin
The Dataprobe cloud usernames and passwords are stored in plain text in a specific file.
OrtaCVSS 6,5İstismar yokEPSS %0dataprobe · iboot-pdu4-n20 firmware22 May 2023
- CVE-2022-318821İzleyin
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where unauthenticated users could open PHP index pages withou
OrtaCVSS 5,3İstismar yokEPSS %1dataprobe · iboot-pdu4-n20 firmware21 Ara 2022
- CVE-2022-318921İzleyin
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where a specially crafted PHP script could use parameters fro
OrtaCVSS 5,3İstismar yokEPSS %0dataprobe · iboot-pdu4-n20 firmware21 Ara 2022
- CVE-2022-318521İzleyin
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product exposes sensitive data concerning
OrtaCVSS 5,3İstismar yokEPSS %0dataprobe · iboot-pdu4-n20 firmware21 Ara 2022
- CVE-2022-318721İzleyin
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where certain PHP pages only validate when a valid connection
OrtaCVSS 5,3İstismar yokEPSS %0dataprobe · iboot-pdu4-n20 firmware21 Ara 2022