İçeriğe atla
Noroxi

ej3 kayıtları

ej3 üreticisine ait 7 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

    Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

    CWE

    Tüm kayıtlar

    7 kayıt
    • CVE-2006-3536
      30İzleyin

      Direct static code injection vulnerability in code/class_db_text.php in EJ3 TOPo 2.2.178 and earlier allows remote attackers to execute arbi

      YüksekCVSS 7,5İstismar yokEPSS %2

      ej3 · topo12 Tem 2006

    • CVE-2003-1409
      21İzleyin

      TOPo 1.43 allows remote attackers to obtain sensitive information by sending an HTTP request with an invalid parameter to (1) in.php or (2)

      OrtaCVSS 5,0Kavram kanıtıEPSS %3

      ej3 · topo31 Ara 2003

    • CVE-2005-1716
      20İzleyin

      TOPo 2.2 (2.2.178) stores data files in the data directory under the web document root with insufficient access control, which allows remote

      OrtaCVSS 5,0İstismar yokEPSS %2

      ej3 · topo24 May 2005

    • CVE-2006-3833
      20İzleyin

      index.php in EJ3 TOPo 2.2.178 allows remote attackers to overwrite existing entries and establish new passwords for the overwritten entries

      OrtaCVSS 5,0İstismar yokEPSS %1

      ej3 · topo25 Tem 2006

    • CVE-2006-3834
      20İzleyin

      EJ3 TOPo 2.2.178 includes the password in cleartext in the ID field to index.php, which allows context-dependent attackers to obtain entry p

      OrtaCVSS 5,0İstismar yokEPSS %1

      ej3 · topo25 Tem 2006

    • CVE-2006-0984
      18İzleyin

      Cross-site scripting (XSS) vulnerability in inc_header.php in EJ3 TOPo 2.2.178 allows remote attackers to inject arbitrary web script or HTM

      OrtaCVSS 4,3Kavram kanıtıEPSS %2

      ej3 · topo3 Mar 2006

    • CVE-2005-1715
      18İzleyin

      Cross-site scripting (XSS) vulnerability in index.php for TOPo 2.2 (2.2.178) allows remote attackers to inject arbitrary web script or HTML

      OrtaCVSS 4,3Kavram kanıtıEPSS %2

      ej3 · topo24 May 2005