İçeriğe atla
Noroxi

flyspray kayıtları

flyspray üreticisine ait 10 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%10
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

10 kayıt
  • CVE-2007-1788
    27İzleyin

    Flyspray 0.9.9, when output_buffering is disabled or "set to a low value," allows remote attackers to bypass authentication via a crafted po

    OrtaCVSS 6,8İstismar yokEPSS %1

    flyspray · flyspray31 Mar 2007

  • CVE-2007-1789
    27İzleyin

    Flyspray 0.9.9 allows remote attackers to obtain sensitive information (private project summaries) via direct requests.

    OrtaCVSS 6,8İstismar yokEPSS %1

    flyspray · flyspray31 Mar 2007

  • CVE-2012-1058
    24İzleyin

    Cross-site request forgery (CSRF) vulnerability in Flyspray 0.9.9.6 allows remote attackers to hijack the authentication of admins for reque

    OrtaCVSS 6,0Kavram kanıtıEPSS %1

    flyspray · flyspray13 Şub 2012

  • CVE-2006-0714
    22İzleyin

    Directory traversal vulnerability in the installation file (sql/install-0.9.7.php) in Flyspray 0.9.7 allows remote attackers to include arbi

    OrtaCVSS 5,0Kavram kanıtıEPSS %8

    flyspray · flyspray15 Şub 2006

  • CVE-2017-15214
    21İzleyin

    Stored XSS vulnerability in Flyspray 1.0-rc4 before 1.0-rc6 allows an authenticated user to inject JavaScript to gain administrator privileg

    OrtaCVSS 5,4İstismar yokEPSS %1

    flyspray · flyspray10 Eki 2017

  • CVE-2017-15213
    21İzleyin

    Stored XSS vulnerability in Flyspray before 1.0-rc6 allows an authenticated user to inject JavaScript to gain administrator privileges, via

    OrtaCVSS 5,4İstismar yokEPSS %1

    flyspray · flyspray10 Eki 2017

  • CVE-2008-1166
    20İzleyin

    Flyspray 0.9.9.4 generates different error messages depending on whether the username is valid or invalid, which allows remote attackers to

    OrtaCVSS 5,0İstismar yokEPSS %1

    flyspray · flyspray5 Mar 2008

  • CVE-2005-3334
    18İzleyin

    Cross-site scripting (XSS) vulnerability in index.php in Flyspray 0.9.7 through 0.9.8 (devel) allows remote attackers to inject arbitrary we

    OrtaCVSS 4,3Kavram kanıtıEPSS %5

    flyspray · flyspray27 Eki 2005

  • CVE-2007-6461
    17İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in Flyspray 0.9.9 through 0.9.9.3 allow remote attackers to inject arbitrar

    OrtaCVSS 4,3İstismar yokEPSS %1

    flyspray · flyspray19 Ara 2007

  • CVE-2008-1165
    17İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in Flyspray 0.9.9 through 0.9.9.4 allow remote attackers to inject arbitrary web script

    OrtaCVSS 4,3İstismar yokEPSS %1

    flyspray · flyspray5 Mar 2008