dreamlevels kayıtları
dreamlevels üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2005-4254Kavram kanıtı | SQL injection vulnerability in view_Results.php in DreamLevels DreamPoll 3.0 final allows remote attackers to execute arbitrary SQL commandsdreamlevels · dream poll | Yüksek7,5 | — | %1,2 | 15 Ara 2005 |
30İzleyin | CVE-2008-3119Kavram kanıtı | SQL injection vulnerability in index.php in DreamPics Builder allows remote attackers to execute arbitrary SQL commands via the page parametdreamlevels · dream pics builder · CWE-89 | Yüksek7,5 | — | %1,0 | 10 Tem 2008 |
30İzleyin | CVE-2008-3189Kavram kanıtı | SQL injection vulnerability in dreamnews-rss.php in DreamNews Manager allows remote attackers to execute arbitrary SQL commands via the id pdreamlevels · dreamnews manager · CWE-89 | Yüksek7,5 | — | %1,0 | 16 Tem 2008 |
30İzleyin | CVE-2009-4745Kavram kanıtı | Multiple SQL injection vulnerabilities in index.php in Dreamlevels DreamPoll 3.1 allow remote attackers to execute arbitrary SQL commands vidreamlevels · dreampoll · CWE-89 | Yüksek7,5 | — | %0,9 | 26 Mar 2010 |
17İzleyin | CVE-2009-4746Kavram kanıtı | Cross-site scripting (XSS) vulnerability in index.php in Dreamlevels DreamPoll 3.1 allows remote attackers to inject arbitrary web script ordreamlevels · dreampoll · CWE-79 | Orta4,3 | — | %1,2 | 26 Mar 2010 |
- CVE-2005-425430İzleyin
SQL injection vulnerability in view_Results.php in DreamLevels DreamPoll 3.0 final allows remote attackers to execute arbitrary SQL commands
YüksekCVSS 7,5Kavram kanıtıEPSS %1dreamlevels · dream poll15 Ara 2005
- CVE-2008-311930İzleyin
SQL injection vulnerability in index.php in DreamPics Builder allows remote attackers to execute arbitrary SQL commands via the page paramet
YüksekCVSS 7,5Kavram kanıtıEPSS %1dreamlevels · dream pics builder10 Tem 2008
- CVE-2008-318930İzleyin
SQL injection vulnerability in dreamnews-rss.php in DreamNews Manager allows remote attackers to execute arbitrary SQL commands via the id p
YüksekCVSS 7,5Kavram kanıtıEPSS %1dreamlevels · dreamnews manager16 Tem 2008
- CVE-2009-474530İzleyin
Multiple SQL injection vulnerabilities in index.php in Dreamlevels DreamPoll 3.1 allow remote attackers to execute arbitrary SQL commands vi
YüksekCVSS 7,5Kavram kanıtıEPSS %1dreamlevels · dreampoll26 Mar 2010
- CVE-2009-474617İzleyin
Cross-site scripting (XSS) vulnerability in index.php in Dreamlevels DreamPoll 3.1 allows remote attackers to inject arbitrary web script or
OrtaCVSS 4,3Kavram kanıtıEPSS %1dreamlevels · dreampoll26 Mar 2010