İçeriğe atla
Noroxi

EasyCorp kayıtları

easycorp üreticisine ait 18 yayımlanmış kayıt.

Tüm kayıtlar

18 kayıt
  • CVE-2020-7361
    40Planlayın

    ZenTao Pro Command Injection

    YüksekCVSS 8,8SilahlaştırılmışEPSS %17

    easycorp · zentao pro6 Ağu 2020

  • CVE-2022-47745
    40Planlayın

    ZenTao 16.4 to 18.0.beta1 is vulnerable to SQL injection.

    YüksekCVSS 8,8İstismar yokEPSS %15

    easycorp · zentao19 Oca 2023

  • CVE-2024-24216
    39İzleyin

    Zentao v18.0 to v18.10 was discovered to contain a remote code execution (RCE) vulnerability via the checkConnection method of /app/zentao/m

    KritikCVSS 9,8İstismar yokEPSS %1

    easycorp · zentao8 Şub 2024

  • CVE-2020-28165
    39İzleyin

    The EasyCorp ZenTao PMS 12.4.2 application suffers from an arbitrary file upload vulnerability.

    KritikCVSS 9,8İstismar yokEPSS %1

    easycorp · zentao12 Ağu 2021

  • CVE-2024-24202
    39İzleyin

    An arbitrary file upload vulnerability in /upgrade/control.php of ZenTao Community Edition v18.10, ZenTao Biz v8.10, and ZenTao Max v4.10 al

    KritikCVSS 9,8İstismar yokEPSS %1

    easycorp · zentao8 Şub 2024

  • CVE-2023-44827
    35İzleyin

    An issue in ZenTao Community Edition v.18.6 and before, ZenTao Biz v.8.6 and before, ZenTao Max v.4.7 and before allows an attacker to execu

    YüksekCVSS 8,8İstismar yokEPSS %1

    easycorp · zentao9 Eki 2023

  • CVE-2022-37700
    31İzleyin

    Zentao Demo15 is vulnerable to Directory Traversal.

    YüksekCVSS 7,5İstismar yokEPSS %3

    easycorp · zentao19 Eyl 2022

  • CVE-2021-27556
    29İzleyin

    The Cron job tab in EasyCorp ZenTao 12.5.3 allows remote attackers (who have admin access) to execute arbitrary code by setting the type par

    YüksekCVSS 7,2İstismar yokEPSS %4

    easycorp · zentao30 Ağu 2021

  • CVE-2021-27558
    24İzleyin

    A cross site scripting (XSS) issue in EasyCorp ZenTao 12.5.3 allows remote attackers to execute arbitrary web script via various areas such

    OrtaCVSS 6,1İstismar yokEPSS %1

    easycorp · zentao30 Ağu 2021

  • CVE-2023-6439
    24İzleyin

    ZenTao PMS cross site scripting

    OrtaCVSS 6,1İstismar yokEPSS %1

    easycorp · zentao30 Kas 2023

  • CVE-2020-21268
    24İzleyin

    Cross Site Scripting vulnerability in EasySoft ZenTao v.11.6.4 allows a remote attacker to execute arbitrary code via the lastComment parame

    OrtaCVSS 6,1İstismar yokEPSS %1

    easycorp · zentao20 Haz 2023

  • CVE-2020-22533
    24İzleyin

    Cross Site Scripting vulnerability found in Zentao allows a remote attacker to execute arbitrary code via the lang parameter

    OrtaCVSS 6,1İstismar yokEPSS %1

    easycorp · zentao4 Nis 2023

  • CVE-2023-49394
    24İzleyin

    Zentao versions 4.1.3 and before has a URL redirect vulnerability, which prevents the system from functioning properly.

    OrtaCVSS 6,1İstismar yokEPSS %0

    easycorp · zentao10 Oca 2024

  • CVE-2024-3081
    21İzleyin

    EasyCorp EasyAdmin Autocomplete autocomplete.js cross site scripting

    OrtaCVSS 5,4İstismar yokEPSS %1

    easycorp · easyadmin29 Mar 2024

  • CVE-2025-5114
    21İzleyin

    easysoft zentaopms Editor index.php edit deserialization

    OrtaCVSS 5,3İstismar yokEPSS %1

    easycorp · zentao23 May 2025

  • CVE-2023-46475
    21İzleyin

    A Stored Cross-Site Scripting vulnerability was discovered in ZenTao 18.3 where a user can create a project, and in the name field of the pr

    OrtaCVSS 5,4İstismar yokEPSS %0

    easycorp · zentao2 Kas 2023

  • CVE-2023-44826
    21İzleyin

    Cross Site Scripting vulnerability in ZenTaoPMS v.18.6 allows a local attacker to obtain sensitive information via a crafted script.

    OrtaCVSS 5,4İstismar yokEPSS %0

    easycorp · zentao9 Eki 2023

  • CVE-2021-27557
    17İzleyin

    A cross-site request forgery (CSRF) vulnerability in the Cron job tab in EasyCorp ZenTao 12.5.3 allows attackers to update the fields of a C

    OrtaCVSS 4,3İstismar yokEPSS %0

    easycorp · zentao30 Ağu 2021