dotnetfoundation kayıtları
dotnetfoundation üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %33,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')7
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-400 Uncontrolled Resource Consumption1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
32İzleyin | CVE-2021-25976İstismar yok | Piranha CMS - Site-wide Cross-Site Request Forgery (CSRF)dotnetfoundation · piranha cms · CWE-352 | Yüksek8,1 | — | %0,5 | 16 Kas 2021 |
30İzleyin | CVE-2022-4952İstismar yok | OmniSharp csharp-language-server-protocol JSON Serializer SerializerBase.cs CreateSerializerSettings resource consumptiondotnetfoundation · c\# language server protocol · CWE-400 | Yüksek7,5 | — | %0,9 | 16 Tem 2023 |
27İzleyin | CVE-2025-57692İstismar yok | PiranhaCMS 12.0 allows stored XSS in the Text content block of Standard and Standard Archive Pages via /manager/pages, enabling execution ofdotnetfoundation · piranha cms · CWE-79 | Orta6,8 | — | %0,3 | 26 Eyl 2025 |
24İzleyin | CVE-2025-61413İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /manager/pages component of Piranha CMS v12.0 allows attackers to execute arbitrarydotnetfoundation · piranha cms · CWE-79 | Orta6,1 | — | %0,3 | 23 Eki 2025 |
24İzleyin | CVE-2025-67291İstismar yok | A stored cross-site scripting (XSS) vulnerability in the Media module of Piranha CMS v12.1 allows attackers to execute arbitrary web scriptsdotnetfoundation · piranha cms · CWE-79 | Orta6,1 | — | %0,2 | 22 Ara 2025 |
24İzleyin | CVE-2025-67290İstismar yok | A stored cross-site scripting (XSS) vulnerability in the Page Settings module of Piranha CMS v12.1 allows attackers to execute arbitrary webdotnetfoundation · piranha cms · CWE-79 | Orta6,1 | — | %0,2 | 22 Ara 2025 |
21İzleyin | CVE-2021-25977İstismar yok | Piranha CMS - Stored XSS in Page Titledotnetfoundation · piranha cms · CWE-79 | Orta5,4 | — | %0,7 | 25 Eki 2021 |
18İzleyin | CVE-2024-55342İstismar yok | A file upload functionality in Piranha CMS 11.1 allows authenticated remote attackers to upload a crafted PDF file to /manager/media.dotnetfoundation · piranha cms · CWE-79 | Orta4,7 | — | %0,5 | 20 Ara 2024 |
18İzleyin | CVE-2024-55341İstismar yok | A stored cross-site scripting (XSS) vulnerability in Piranha CMS 11.1 allows remote attackers to execute arbitrary JavaScript in the web brodotnetfoundation · piranha cms · CWE-79 | Orta4,7 | — | %0,5 | 20 Ara 2024 |
- CVE-2021-2597632İzleyin
Piranha CMS - Site-wide Cross-Site Request Forgery (CSRF)
YüksekCVSS 8,1İstismar yokEPSS %0dotnetfoundation · piranha cms16 Kas 2021
- CVE-2022-495230İzleyin
OmniSharp csharp-language-server-protocol JSON Serializer SerializerBase.cs CreateSerializerSettings resource consumption
YüksekCVSS 7,5İstismar yokEPSS %1dotnetfoundation · c\# language server protocol16 Tem 2023
- CVE-2025-5769227İzleyin
PiranhaCMS 12.0 allows stored XSS in the Text content block of Standard and Standard Archive Pages via /manager/pages, enabling execution of
OrtaCVSS 6,8İstismar yokEPSS %0dotnetfoundation · piranha cms26 Eyl 2025
- CVE-2025-6141324İzleyin
A stored cross-site scripting (XSS) vulnerability in the /manager/pages component of Piranha CMS v12.0 allows attackers to execute arbitrary
OrtaCVSS 6,1İstismar yokEPSS %0dotnetfoundation · piranha cms23 Eki 2025
- CVE-2025-6729124İzleyin
A stored cross-site scripting (XSS) vulnerability in the Media module of Piranha CMS v12.1 allows attackers to execute arbitrary web scripts
OrtaCVSS 6,1İstismar yokEPSS %0dotnetfoundation · piranha cms22 Ara 2025
- CVE-2025-6729024İzleyin
A stored cross-site scripting (XSS) vulnerability in the Page Settings module of Piranha CMS v12.1 allows attackers to execute arbitrary web
OrtaCVSS 6,1İstismar yokEPSS %0dotnetfoundation · piranha cms22 Ara 2025
- CVE-2021-2597721İzleyin
Piranha CMS - Stored XSS in Page Title
OrtaCVSS 5,4İstismar yokEPSS %1dotnetfoundation · piranha cms25 Eki 2021
- CVE-2024-5534218İzleyin
A file upload functionality in Piranha CMS 11.1 allows authenticated remote attackers to upload a crafted PDF file to /manager/media.
OrtaCVSS 4,7İstismar yokEPSS %1dotnetfoundation · piranha cms20 Ara 2024
- CVE-2024-5534118İzleyin
A stored cross-site scripting (XSS) vulnerability in Piranha CMS 11.1 allows remote attackers to execute arbitrary JavaScript in the web bro
OrtaCVSS 4,7İstismar yokEPSS %0dotnetfoundation · piranha cms20 Ara 2024