deskpro kayıtları
deskpro üreticisine ait 13 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-269 Improper Privilege Management2
- CWE-862 Missing Authorization2
- CWE-502 Deserialization of Untrusted Data1
- CWE-918 Server-Side Request Forgery (SSRF)1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
13 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2020-11465İstismar yok | An issue was discovered in Deskpro before 2019.8.0.deskpro · deskpro · CWE-862 | Yüksek8,8 | — | %1,9 | 1 Nis 2020 |
31İzleyin | CVE-2020-11463İstismar yok | An issue was discovered in Deskpro before 2019.8.0.deskpro · deskpro · CWE-862 | Yüksek7,5 | — | %1,8 | 1 Nis 2020 |
29İzleyin | CVE-2020-11467İstismar yok | An issue was discovered in Deskpro before 2019.8.0.deskpro · deskpro · CWE-502 | Yüksek7,2 | — | %4,0 | 1 Nis 2020 |
28İzleyin | CVE-2021-35391İstismar yok | Server Side Request Forgery vulnerability found in Deskpro Support Desk v2021.21.6 allows attackers to execute arbitrary code via a crafted deskpro · deskpro · CWE-918 | Yüksek7,2 | — | %1,0 | 21 Tem 2023 |
27İzleyin | CVE-2006-6159İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in DeskPRO 2.0.0 and 2.0.1 allow remote attackers to inject arbitrary wdeskpro · deskpro · CWE-79 | Orta6,8 | — | %1,4 | 28 Kas 2006 |
21İzleyin | CVE-2020-28722İstismar yok | Deskpro Cloud Platform and on-premise 2020.2.3.48207 from 2020-07-30 contains a cross-site scripting (XSS) vulnerability that can lead to andeskpro · deskpro · CWE-79 | Orta5,4 | — | %0,6 | 12 May 2021 |
21İzleyin | CVE-2021-36696İstismar yok | Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in social medeskpro · deskpro · CWE-79 | Orta5,4 | — | %0,6 | 7 Eyl 2021 |
21İzleyin | CVE-2021-36695İstismar yok | Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in the downldeskpro · deskpro · CWE-79 | Orta5,4 | — | %0,6 | 8 Eyl 2021 |
20İzleyin | CVE-2003-0874İstismar yok | Multiple SQL injection vulnerabilities in DeskPRO 1.1.0 and earlier allow remote attackers to insert arbitrary SQL and conduct unauthorized deskpro · deskpro | Orta5,0 | — | %1,4 | 17 Kas 2003 |
18İzleyin | CVE-2007-2011Kavram kanıtı | Cross-site scripting (XSS) vulnerability in login.php in DeskPro 2.0.1 allows remote attackers to inject arbitrary web script or HTML via thdeskpro · deskpro | Orta4,3 | — | %1,9 | 12 Nis 2007 |
17İzleyin | CVE-2020-11466İstismar yok | An issue was discovered in Deskpro before 2019.8.0.deskpro · deskpro · CWE-269 | Orta4,3 | — | %1,2 | 1 Nis 2020 |
17İzleyin | CVE-2020-11464İstismar yok | An issue was discovered in Deskpro before 2019.8.0.deskpro · deskpro · CWE-269 | Orta4,3 | — | %1,2 | 1 Nis 2020 |
17İzleyin | CVE-2007-1012İstismar yok | Cross-site scripting (XSS) vulnerability in faq.php in DeskPRO 1.1.0 allows remote attackers to inject arbitrary web script or HTML via the deskpro · deskpro · CWE-79 | Orta4,3 | — | %1,1 | 21 Şub 2007 |
- CVE-2020-1146536İzleyin
An issue was discovered in Deskpro before 2019.8.0.
YüksekCVSS 8,8İstismar yokEPSS %2deskpro · deskpro1 Nis 2020
- CVE-2020-1146331İzleyin
An issue was discovered in Deskpro before 2019.8.0.
YüksekCVSS 7,5İstismar yokEPSS %2deskpro · deskpro1 Nis 2020
- CVE-2020-1146729İzleyin
An issue was discovered in Deskpro before 2019.8.0.
YüksekCVSS 7,2İstismar yokEPSS %4deskpro · deskpro1 Nis 2020
- CVE-2021-3539128İzleyin
Server Side Request Forgery vulnerability found in Deskpro Support Desk v2021.21.6 allows attackers to execute arbitrary code via a crafted
YüksekCVSS 7,2İstismar yokEPSS %1deskpro · deskpro21 Tem 2023
- CVE-2006-615927İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in DeskPRO 2.0.0 and 2.0.1 allow remote attackers to inject arbitrary w
OrtaCVSS 6,8İstismar yokEPSS %1deskpro · deskpro28 Kas 2006
- CVE-2020-2872221İzleyin
Deskpro Cloud Platform and on-premise 2020.2.3.48207 from 2020-07-30 contains a cross-site scripting (XSS) vulnerability that can lead to an
OrtaCVSS 5,4İstismar yokEPSS %1deskpro · deskpro12 May 2021
- CVE-2021-3669621İzleyin
Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in social me
OrtaCVSS 5,4İstismar yokEPSS %1deskpro · deskpro7 Eyl 2021
- CVE-2021-3669521İzleyin
Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in the downl
OrtaCVSS 5,4İstismar yokEPSS %1deskpro · deskpro8 Eyl 2021
- CVE-2003-087420İzleyin
Multiple SQL injection vulnerabilities in DeskPRO 1.1.0 and earlier allow remote attackers to insert arbitrary SQL and conduct unauthorized
OrtaCVSS 5,0İstismar yokEPSS %1deskpro · deskpro17 Kas 2003
- CVE-2007-201118İzleyin
Cross-site scripting (XSS) vulnerability in login.php in DeskPro 2.0.1 allows remote attackers to inject arbitrary web script or HTML via th
OrtaCVSS 4,3Kavram kanıtıEPSS %2deskpro · deskpro12 Nis 2007
- CVE-2020-1146617İzleyin
An issue was discovered in Deskpro before 2019.8.0.
OrtaCVSS 4,3İstismar yokEPSS %1deskpro · deskpro1 Nis 2020
- CVE-2020-1146417İzleyin
An issue was discovered in Deskpro before 2019.8.0.
OrtaCVSS 4,3İstismar yokEPSS %1deskpro · deskpro1 Nis 2020
- CVE-2007-101217İzleyin
Cross-site scripting (XSS) vulnerability in faq.php in DeskPRO 1.1.0 allows remote attackers to inject arbitrary web script or HTML via the
OrtaCVSS 4,3İstismar yokEPSS %1deskpro · deskpro21 Şub 2007